PT-2023-21268 · WordPress · Daily Prayer Time

Yuyudhn

·

Published

2023-06-22

·

Updated

2024-10-04

·

CVE-2023-27631

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Daily Prayer Time plugin versions prior to 2023.05.04
Description A Stored Cross-Site Scripting (XSS) issue affects the Daily Prayer Time plugin, allowing attackers to inject malicious scripts. This issue is related to authentication and affects users with contributor or higher permissions.
Recommendations For versions prior to 2023.05.04, update to a version released after 2023.05.04 to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2023-27631

Affected Products

Daily Prayer Time