WordPress Plugin Site Reviews Multiple Vulnerabilities - CVE-2023-27625 - Vulnerability Database

WordPress Plugin Site Reviews Multiple Vulnerabilities - CVE-2023-27625

Medium
Reference: CVE-2023-27625
Title: WordPress Plugin Site Reviews Multiple Vulnerabilities
Overview:

WordPress Plugin Site Reviews is prone to multiple vulnerabilities including cross-site scripting and security bypass vulnerabilities. Exploiting these issues could allow an attacker to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site to steal cookie-based authentication credentials or to perform otherwise restricted actions and subsequently tamper with the console logging level amongst other actions like rolling back the plugins version. WordPress Plugin Site Reviews version 6.5.1 is vulnerable prior versions may also be affected.