Medium severity5.9NVD Advisory· Published Sep 27, 2023· Updated Jun 17, 2026
CVE-2023-28790
CVE-2023-28790
Description
Auth. (editor+) Stored Cross-Site Scripting (XSS) vulnerability in Brett Shumaker Simple Staff List plugin <= 2.2.3 versions.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: <=2.2.3
- Range: n/a
- cpe:2.3:a:simple_staff_list_project:simple_staff_list:*:*:*:*:*:wordpress:*:*Range: <2.2.4
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.