WordPress WP Photo Album Plus Plugin <= 8.5.02.005 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-49813
What is CVE-2023-49813?
A Cross-site Scripting (XSS) vulnerability has been identified in the WP Photo Album Plus plugin by OpaJaap. This flaw results from the improper neutralization of user input during web page generation, permitting the injection of malicious scripts that can be executed in the context of an unsuspecting user's browser. This security issue specifically impacts versions of WP Photo Album Plus from 'n/a' to 8.5.02.005, allowing attackers to store harmful JavaScript within the application, potentially compromising user data and session integrity.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
WP Photo Album Plus <= 8.5.02.005
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved