Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2r5h-m86c-qqjm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A vulnerability in the saveCustomType function of the WP Upload Restriction WordPress plugin allows low-level authenticated users to inject arbitrary web scripts. This issue affects versions 2.2.3 and prior.

A vulnerability in the saveCustomType function of the WP Upload Restriction WordPress plugin allows low-level authenticated users to inject arbitrary web scripts. This issue affects versions 2.2.3 and prior.

EPSS

Процентиль: 54%
0.00314
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.4
nvd
больше 4 лет назад

A vulnerability in the saveCustomType function of the WP Upload Restriction WordPress plugin allows low-level authenticated users to inject arbitrary web scripts. This issue affects versions 2.2.3 and prior.

EPSS

Процентиль: 54%
0.00314
Низкий

Дефекты

CWE-79