Project Subscriptions
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 09 Jun 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sonaar
Sonaar sonaar Music Plugin Wordpress Wordpress wordpress |
|
| Vendors & Products |
Sonaar
Sonaar sonaar Music Plugin Wordpress Wordpress wordpress |
Mon, 08 Jun 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 08 Jun 2026 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | WordPress Sonaar Music Plugin 4.7 contains a stored cross-site scripting vulnerability that allows unauthenticated attackers to inject malicious scripts through the comment functionality. Attackers can submit JavaScript payloads in the comment parameter to wp-comments-post.php which are stored and executed in the browsers of users viewing the affected playlist pages. | |
| Title | WordPress Sonaar Music Plugin 4.7 Stored XSS via Comments | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-06-08T11:01:45.212Z
Reserved: 2026-01-10T01:51:52.987Z
Link: CVE-2023-54351
Updated: 2026-06-08T11:01:41.159Z
Status : Deferred
Published: 2026-06-08T02:16:22.950
Modified: 2026-06-08T14:59:44.750
Link: CVE-2023-54351
No data.
OpenCVE Enrichment
Updated: 2026-06-09T08:57:43Z