WordPress wp auto top plugin <= 2.9.3 - CSRF to Stored Cross Site Scripting (XSS) vulnerability
CVE-2024-53716
7.1HIGH
What is CVE-2024-53716?
A Cross-Site Request Forgery (CSRF) vulnerability exists in the Overtrue WP Auto Top plugin, allowing attackers to exploit the plugin potentially leading to Stored Cross-Site Scripting (XSS) issues. This vulnerability affects all versions of the plugin up to 2.9.3. Successful exploitation could enable an attacker to execute arbitrary scripts in the context of the user's browser, compromising sensitive information and site integrity.
Affected Version(s)
wp auto top <= 2.9.3