WordPress Click To Tweet Plugin <= 2.0.14 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-41856
7.1HIGH
What is CVE-2023-41856?
The Click To Tweet plugin by ClickToTweet.Com has a vulnerability that allows unauthenticated users to execute arbitrary JavaScript code via reflected cross-site scripting. This flaw affects versions up to 2.0.14, posing risks to users by potentially exposing sensitive data or allowing malicious actions through compromised scripts.
Affected Version(s)
Click To Tweet <= 2.0.14