CVE-2023-4148
Ditty < 3.1.25 - Reflected XSS
Record summary
CVE-2023-4148 has a selected CVSS score of 6.1 (medium); EIP currently links 1 Nuclei template.
Description
The Ditty WordPress plugin before 3.1.25 does not sanitise and escape some parameters and generated URLs before outputting them back in attributes, leading to Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
Exploitation context
Available material
- Nuclei templates
- 1
CISA SSVC decision
CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 23, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
DittyDefault status: unaffected | CVE List | Before 3.1.25 | affected |
Nuclei templates
1ProjectDiscoveryMEDIUMDitty < 3.1.25 - Cross-Site ScriptingCVSS 6.1
The Ditty WordPress plugin before 3.1.25 does not sanitise and escape some parameters and generated URLs before outputting them back in attributes, leading to Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
Impact
Unauthenticated attackers can inject malicious JavaScript through unsanitized parameters and generated URLs to steal session cookies from high-privilege users including WordPress administrators.
Remediation
Fixed in version 3.1.25
Source: ProjectDiscovery