Vulnerability CVE-2023-2498


Published: 2023-05-24

Description:
The Go Pricing - WordPress Responsive Pricing Tables plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 3.3.19 due to insufficient input sanitization and output escaping. This makes it possible for contributor-level attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

 References:
https://www.wordfence.com/threat-intel/vulnerabilities/id/1c3d4c96-63a7-4f3b-a9ac-095be241f840?source=cve
https://codecanyon.net/item/go-pricing-wordpress-responsive-pricing-tables/3725820

Copyright 2026, cxsecurity.com

 

Back to Top