PT-2023-13959 · WordPress · Superio

Veshraj Ghimire

·

Published

2023-01-02

·

Updated

2025-04-10

·

CVE-2022-4114

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Superio WordPress theme (affected versions not specified)
Description The issue concerns the Superio WordPress theme, which does not properly sanitise and escape certain parameters. This could allow users with a role as low as a subscriber to perform Cross-Site Scripting attacks.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Related Identifiers

CVE-2022-4114

Affected Products

Superio