VYPR
Medium severity6.5NVD Advisory· Published Mar 30, 2023· Updated Jun 17, 2026

CVE-2023-23670

CVE-2023-23670

Description

Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in Team Heateor Fancy Comments WordPress plugin <= 1.2.10 versions.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:heateor:fancy_comments:*:*:*:*:*:wordpress:*:*+ 1 more
    • cpe:2.3:a:heateor:fancy_comments:*:*:*:*:*:wordpress:*:*range: <1.2.11
    • (no CPE)range: n/a
  • Range: <=1.2.10

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.