PT-2021-15773 · WordPress · Patreon Wordpress Plugin
Benedict Singer
+5
·
Published
2021-04-12
·
Updated
2021-04-14
·
CVE-2021-24229
CVSS v3.1
9.6
Critical
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
Patreon WordPress plugin versions prior to 1.7.2
Description:
A Reflected Cross-Site Scripting issue was identified in the Patreon WordPress plugin. The issue is related to the
patreon save attachment patreon level AJAX action, which is used to update the pledge level required by Patreon subscribers to access a given attachment. This action is accessible to user accounts with the manage options privilege, meaning only administrators can access it. The risk arises from a parameter not being sanitized before being printed back to the user.Recommendations:
For versions prior to 1.7.2, update to version 1.7.2 or later to resolve the issue. As a temporary workaround, consider restricting access to the
patreon save attachment patreon level AJAX action to minimize the risk of exploitation.Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Patreon Wordpress Plugin