PT-2022-25274 · WordPress · Awesome-Filterable-Portfolio

Ngo Van

·

Published

2022-09-23

·

Updated

2022-09-23

·

CVE-2022-40193

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Awesome Filterable Portfolio plugin version 1.9.7 and earlier
Description The issue is an Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability. This means that an attacker can inject malicious scripts into the website without needing authentication, potentially affecting user sessions.
Recommendations For Awesome Filterable Portfolio plugin version 1.9.7 and earlier, update to a version later than 1.9.7 to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2022-40193

Affected Products

Awesome-Filterable-Portfolio