Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3gp8-m4q9-qx42

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The webtoffee "WordPress Users & WooCommerce Customers Import Export" plugin 1.3.0 for WordPress allows CSV injection in the user_url, display_name, first_name, and last_name columns in an exported CSV file created by the WF_CustomerImpExpCsv_Exporter class.

The webtoffee "WordPress Users & WooCommerce Customers Import Export" plugin 1.3.0 for WordPress allows CSV injection in the user_url, display_name, first_name, and last_name columns in an exported CSV file created by the WF_CustomerImpExpCsv_Exporter class.

EPSS

Процентиль: 92%
0.08413
Низкий

Связанные уязвимости

CVSS3: 7.3
nvd
больше 6 лет назад

The webtoffee "WordPress Users & WooCommerce Customers Import Export" plugin 1.3.0 for WordPress allows CSV injection in the user_url, display_name, first_name, and last_name columns in an exported CSV file created by the WF_CustomerImpExpCsv_Exporter class.

EPSS

Процентиль: 92%
0.08413
Низкий