cleantalk
Vulnerabilities and Security Researches

Shortcodes and extra features for Phlox theme, CVE-2023-50368

CVE, Research URL

CVE-2023-50368

Published on
Dec 14, 2023
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Averta Shortcodes and extra features for Phlox theme allows Stored XSS.This issue affects Shortcodes and extra features for Phlox theme: from n/a through 2.15.2.
Affected versions
max 2.15.5.
Status
vulnerable