Vulnerability CVE-2023-4687


Published: 2023-10-16

Description:
The Page Builder: Pagelayer WordPress plugin before 1.7.7 doesn't prevent unauthenticated attackers from updating a post's header or footer code on scheduled posts.

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

 References:
https://wpscan.com/vulnerability/31596fc5-4203-40c4-9b0a-e8a37faafddd

Copyright 2026, cxsecurity.com

 

Back to Top