Vulnerability Details CVE-2023-0422
The Article Directory WordPress plugin through 1.3 does not properly sanitize the `publish_terms_text` setting before displaying it in the administration panel, which may enable administrators to conduct Stored XSS attacks in multisite contexts.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 23.7%
CVSS Severity
CVSS v3 Score 4.8
Products affected by CVE-2023-0422
-
cpe:2.3:a:article_directory_project:article_directory:-
-
cpe:2.3:a:article_directory_project:article_directory:1.3