CVE-2023-28621: Wishfulthemes Raise Mag
Medium severity, CVSS 6.1. EPSS: 0.5% chance of exploitation in the next 30 days.
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Wishfulthemes Raise Mag, Wishfulthemes Wishful Blog themes allows Reflected XSS.This issue affects Raise Mag: from n/a through 1.0.7; Wishful Blog: from n/a through 2.0.1.
Affected products
- Wishfulthemes Raise Mag: up to and including 1.0.7
- Wishfulthemes Wishful Blog: up to and including 2.0.1
Published 2023-11-16. Last modified 2026-06-17.