Cross-Site Scripting Vulnerability in WPVibes WP Mail Log Plugin
CVE-2023-33999
7.1HIGH
What is CVE-2023-33999?
A cross-site scripting (XSS) vulnerability exists in the WPVibes WP Mail Log plugin, allowing attackers to exploit improper input handling during web page generation. This vulnerability can lead to unauthorized script execution in the browser of users who interact with the affected plugin. Specifically, versions from release to 1.0.2 are impacted, highlighting the need for prompt updates to mitigate risks associated with potential data exposure and compromised user sessions.
Affected Version(s)
WP Mail Log <= 1.0.2