Beta

Report

Beauty <= 1.1.4 is vulnerable to Authenticated (Subscriber+) Stored Cross-Site Scripting via tpl_featured_cat_id Parameter vulnerability

Subscriber
Published
2024-09-12

The Beauty theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘tpl_featured_cat_id’ parameter in all versions up to, and including, 1.1.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Subscriber-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS

Score:6.5

Severity:Medium

Version: 1.1.4

The plugin vendor has not patched this vulnerability at the moment.