CVE detail
CVE-2023-0602 — CVE-2023-0602
Published 2023-07-31 · Modified 2026-06-17 · Vendor johnniejodelljr · Product twittee_text_tweet · Source nvd
MEDIUM
severity
CVSS-derived band
0.0089
EPSS probability
exploitation probability, 30d
56.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
The Twittee Text Tweet WordPress plugin through 1.0.8 does not properly escape POST values which are printed back to the user inside one of the plugin's administrative page, which allows reflected XSS attacks targeting administrators to happen.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References