Vulnerability CVE-2023-0422


Published: 2023-04-10

Description:
The Article Directory WordPress plugin through 1.3 does not properly sanitize the `publish_terms_text` setting before displaying it in the administration panel, which may enable administrators to conduct Stored XSS attacks in multisite contexts.

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

 References:
https://wpscan.com/vulnerability/d57f2fb2-5251-4069-8c9a-a4af269c5e62

Copyright 2026, cxsecurity.com

 

Back to Top