cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2023-1372,https://securityvulnerability.io/vulnerability/CVE-2023-1372,Stored Cross-Site Scripting Vulnerability in WH Testimonials Plugin for WordPress,"The WH Testimonials plugin for WordPress is exposed to a Stored Cross-Site Scripting vulnerability due to inadequate input sanitization and output escaping. Attackers can exploit this weakness by injecting malicious scripts into various parameters, including wh_homepage, wh_text_short, and wh_text_full. Once a user accesses a compromised page, the injected scripts execute, potentially leading to unauthorized actions or data theft. This vulnerability affects all versions of the plugin up to and including 3.0.0.",Wordpress,WH Testimonials,6.1,MEDIUM,0.0010300000431016088,false,,false,false,false,,false,false,2023-03-13T13:15:00.000Z,0