Security Advisory

CVE-2023-4250

6.1
MEDIUM

Vulnerability Description

The EventPrime WordPress plugin before 3.2.0 does not sanitise and escape some parameters before outputting them back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.
Published Date October 31, 2023
Official Source NIST NVD Advisory