WordPress Atarim Plugin <= 3.9.3 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-37393
7.1HIGH
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 4 September 2023
What is CVE-2023-37393?
The Atarim Visual Website Collaboration plugin for WordPress has a vulnerability that permits authenticated users with administrative privileges to execute stored cross-site scripting (XSS) attacks. This flaw exists in versions 3.9.3 and earlier, potentially allowing the injection of malicious scripts that could compromise user data and site integrity.
Affected Version(s)
Visual Website Collaboration, Feedback & Project Management – Atarim <= 3.9.3