Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in myCred myCred – Points, Rewards, Gamification, Ranks, Badges & Loyalty Plugin allows Stored XSS.This issue affects myCred – Points, Rewards, Gamification, Ranks, Badges & Loyalty Plugin: from n/a through 2.6.1.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2023-51948 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in myCred myCred – Points, Rewards, Gamification, Ranks, Badges & Loyalty Plugin allows Stored XSS.This issue affects myCred – Points, Rewards, Gamification, Ranks, Badges & Loyalty Plugin: from n/a through 2.6.1. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 17 Oct 2025 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Wpexperts
Wpexperts mycred |
|
CPEs | cpe:2.3:a:wpexperts:mycred:*:*:*:*:*:wordpress:*:* | |
Vendors & Products |
Mycred
Mycred mycred |
Wpexperts
Wpexperts mycred |
Tue, 01 Oct 2024 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2024-10-01T15:48:22.803Z
Reserved: 2023-11-13T01:08:38.452Z
Link: CVE-2023-47853

Updated: 2024-08-02T21:16:43.667Z

Status : Modified
Published: 2023-11-30T17:15:10.523
Modified: 2025-10-17T16:52:50.380
Link: CVE-2023-47853

No data.

No data.