CVE-2023-23738

Severity CVSS v4.0:
Pending analysis
Type:
CWE-74 Injection
Publication date:
03/06/2024
Last modified:
10/04/2025

Description

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in Brainstorm Force Spectra allows Content Spoofing, Phishing.This issue affects Spectra: from n/a through 2.3.0.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:brainstormforce:spectra:*:*:*:*:*:wordpress:*:* 2.3.1 (excluding)