Code Injection Vulnerability in WP Content Pilot - Autoblogging & Affiliate Marketing Plugin
CVE-2023-45053

4.3MEDIUM

What is CVE-2023-45053?

The WP Content Pilot – Autoblogging & Affiliate Marketing Plugin is susceptible to an improper neutralization of script-related HTML tags, resulting in a basic cross-site scripting (XSS) vulnerability. This allows attackers to inject malicious code, potentially compromising site integrity and user data. The affected versions range from n/a up to 1.3.3, emphasizing the need for users to apply necessary updates or patches to safeguard their applications.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

WP Content Pilot – Autoblogging & Affiliate Marketing Plugin <= 1.3.3

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Abdi Pranata (Patchstack Alliance)
.