CVE-2023-47772

WordPress Slider Revolution Plugin <= 6.6.14 is vulnerable to Cross Site Scripting (XSS)

Contributor+ Stored Cross-Site Scripting (XSS) vulnerability in Slider Revolution <= 6.6.14.


We have discovered 849,736 live websites that are affected by CVE-2023-47772.

Run a Free Instant Scan




Affected Software

Product  Revslider
Category UI Frameworks
Vulnerable Domains849,736 live websites (62% of Revslider install base)
Vulnerable Versions
  • from 0 through 6.6.14
Vulnerable Versions Count321 versions ( 83% of all versions)


Common Weakness Enumeration

CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')



Details

  • Published - Nov 20, 2023
  • Updated - Aug 2, 2024

Credits

  • Rafie Muhammad (Patchstack) (finder)

Website Distribution by Country

Number of websites using CVE-2023-47772
United States201,941 websites



Germany85,301 websites
Italy59,715 websites
France50,913 websites
GB37,376 websites
Spain32,129 websites
Turkey23,651 websites
Netherlands23,435 websites
Poland22,451 websites
Brazil21,031 websites

Website Distribution by TLD

Number of websites using CVE-2023-47772
.com348,200 websites
.de45,445 websites
.it42,090 websites
.org28,580 websites
.co.uk21,944 websites
.nl20,437 websites
.com.br20,172 websites
.fr19,879 websites
.pl16,835 websites
.net15,783 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2023-47772

Top websites that are affected by CVE-2023-47772. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
******.com France*,***
***********.eu Cyprus*,***
************.com Singapore*,***
******************.org United States*,***
************.ie United States*,***
**********.org United States*,***
************.net United States*,***
********************.com Cyprus*,***
******************.cat Spain*,***
*****************.com United States*,***
See full domain list

FAQ

CVE-2023-47772 is Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in Revslider
A total of 849,736 websites have been identified as vulnerable to CVE-2023-47772, based on global website indexing conducted by WebTechSurvey.
The Revslider is affected by the CVE-2023-47772 vulnerability.
Revslider versions up to and including 6.6.14 are vulnerable to CVE-2023-47772.