Cross Site Scripting in WP Githuber MD Plugin by WordPress
CVE-2023-41423
5.4MEDIUM
What is CVE-2023-41423?
The WP Githuber MD plugin version 1.16.2 is susceptible to a Cross Site Scripting (XSS) vulnerability, which enables remote attackers to inject and execute arbitrary code through a specially crafted payload. This flaw is particularly concerning as it allows attackers to exploit the 'new article' function, potentially compromising user data and application integrity.