PT-2021-15773 · WordPress · Patreon Wordpress Plugin

Benedict Singer

+5

·

Published

2021-04-12

·

Updated

2021-04-14

·

CVE-2021-24229

CVSS v3.1

9.6

Critical

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Patreon WordPress plugin versions prior to 1.7.2
Description: A Reflected Cross-Site Scripting issue was identified in the Patreon WordPress plugin. The issue is related to the patreon save attachment patreon level AJAX action, which is used to update the pledge level required by Patreon subscribers to access a given attachment. This action is accessible to user accounts with the manage options privilege, meaning only administrators can access it. The risk arises from a parameter not being sanitized before being printed back to the user.
Recommendations: For versions prior to 1.7.2, update to version 1.7.2 or later to resolve the issue. As a temporary workaround, consider restricting access to the patreon save attachment patreon level AJAX action to minimize the risk of exploitation.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-24229

Affected Products

Patreon Wordpress Plugin