WordPress Maspik – Spam blacklist Plugin <= 0.9.2 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-48272
7.1HIGH
What is CVE-2023-48272?
The Yonifre Maspik – Spam Blacklist plugin is susceptible to a Stored Cross-Site Scripting (XSS) vulnerability, which could allow attackers to inject malicious scripts into web pages viewed by users. This vulnerability affects versions up to and including 0.9.2, posing a risk of unauthorized access and data manipulation for users interacting with the web application.
Affected Version(s)
Maspik – Spam Blacklist <= 0.9.2