The Article Directory WordPress plugin through 1.3 does not properly sanitize the `publish_terms_text` setting before displaying it in the administration panel, which may enable administrators to conduct Stored XSS attacks in multisite contexts.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: WPScan
Published: 2023-04-10T13:18:01.633Z
Updated: 2024-08-02T05:10:55.919Z
Reserved: 2023-01-20T08:51:21.017Z
Link: CVE-2023-0422
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-04-10T14:15:08.290
Modified: 2024-11-21T07:37:09.120
Link: CVE-2023-0422
Redhat
No data.