Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-12496 | The Loan Comparison WordPress plugin before 1.5.3 does not validate and escape some of its query parameters before outputting them back in a page/post via an embedded shortcode, which could allow an attacker to inject javascript into into the site via a crafted URL. |
Wed, 12 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-03-12T13:27:36.989Z
Reserved: 2023-01-23T14:18:52.707Z
Link: CVE-2023-0442
Updated: 2024-08-02T05:10:56.330Z
Status : Modified
Published: 2023-02-21T09:15:12.963
Modified: 2026-06-17T05:25:33.683
Link: CVE-2023-0442
No data.
OpenCVE Enrichment
No data.
No weakness.
EUVD