nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-49176 CVE-2023-49176
HIGH
WordPress WP Pocket URLs Plugin <= 1.0.2 is vulnerable to Cross Site Scripting (XSS)
Record summary
CVE-2023-49176 has a selected CVSS score of 7.1 (high).
Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodeRevolution WP Pocket URLs allows Reflected XSS.This issue affects WP Pocket URLs: from n/a through 1.0.2.
Description source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
WP Pocket URLsBrowse CodeRevolution / WP Pocket URLsDefault status: unaffected | CVE List | Through 1.0.2 | affected |
References
2patchstack.comvdb entry
https://patchstack.com/database/vulnerability/wp-pocket-urls/wordpress-wp-pocket-urls-plugin-1-0-2-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve