WordPress TinyMCE Custom Styles Plugin <= 1.1.2 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-23995
4.8MEDIUM
What is CVE-2023-23995?
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Tim Reeves & David Stöckl TinyMCE Custom Styles plugin <= 1.1.2 versions.
Affected Version(s)
TinyMCE Custom Styles <= 1.1.2