PT-2023-23904 · WordPress · Rank Math Seo
Rafie Muhammad
·
Published
2023-08-05
·
Updated
2024-03-25
·
CVE-2023-32600
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
Rank Math SEO plugin versions prior to 1.0.120
Description
A Stored Cross-Site Scripting (XSS) vulnerability has been identified, posing a severe security risk. This issue affects over two million websites, exposing them to potential cyber-attacks. The vulnerability allows for malicious script execution, which can lead to unauthorized access and data breaches.
Recommendations
For versions prior to 1.0.120, update to version 1.0.120 or later to resolve the issue. As a temporary workaround, consider restricting access to sensitive areas of the website to minimize the risk of exploitation.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Rank Math Seo