WordPress WP Docs Plugin <= 1.9.9 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-32106
7.1HIGH
What is CVE-2023-32106?
The WP Docs plugin by Fahad Mahmood is susceptible to an unauthenticated reflected cross-site scripting (XSS) vulnerability, which can be exploited by attackers to inject malicious scripts into web pages viewed by other users. This vulnerability affects versions equal to or less than 1.9.9, allowing an attacker to manipulate user sessions or steal sensitive information through deceptive links.
Affected Version(s)
WP Docs <= 1.9.9