Cross-Site Request Forgery (CSRF) vulnerability in Stark Digital Category Post List Widget allows Stored XSS.This issue affects Category Post List Widget: from n/a through 2.0.
References
Configurations
History
16 Nov 2023, 18:16
Type | Values Removed | Values Added |
---|---|---|
References | () https://patchstack.com/database/vulnerability/category-post-list-widget/wordpress-category-post-list-widget-plugin-2-0-csrf-to-cross-site-scripting-xss-vulnerability?_s_id=cve - Third Party Advisory | |
First Time |
Starkdigital category Post List Widget
Starkdigital |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
CPE | cpe:2.3:a:starkdigital:category_post_list_widget:*:*:*:*:*:wordpress:*:* |
13 Nov 2023, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-11-13 04:15
Updated : 2024-02-28 20:54
NVD link : CVE-2023-47516
Mitre link : CVE-2023-47516
CVE.ORG link : CVE-2023-47516
JSON object : View
Products Affected
starkdigital
- category_post_list_widget
CWE
CWE-352
Cross-Site Request Forgery (CSRF)