ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2023-0171”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2023-0171
Published
2023-02-06
CVSS:
5.4
ShadowTrackr CVSS:
1.1
Summary:
The jQuery T(-) Countdown Widget WordPress plugin before 2.3.24 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.