CVE Database
/

CVE-2023-2309

Back to search

CVE-2023-2309

Published: Jul 24, 2023

Modified: Oct 24, 2024

PUBLISHED

Description

The wpForo Forum WordPress plugin before 2.1.9 does not escape some request parameters while in debug mode, leading to a Reflected Cross-Site Scripting vulnerability.

VendorProductVersions

Unknown

wpForo Forum

affected
0 - < 2.1.9

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now