WordPress Peter’s Custom Anti-Spam Plugin <= 3.2.2 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-45759
7.1HIGH
What is CVE-2023-45759?
An unauthenticated reflected cross-site scripting (XSS) vulnerability exists in Peter Keung's Custom Anti-Spam plugin, affecting versions 3.2.2 and earlier. This security flaw allows attackers to inject malicious scripts into web pages viewed by other users, potentially leading to unauthorized actions and data exposure. Website owners and administrators should take immediate steps to mitigate this vulnerability by updating to the latest versions of the plugin and applying necessary security measures.
Affected Version(s)
Peter’s Custom Anti-Spam <= 3.2.2