Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-52x4-hjxq-qrcm

Опубликовано: 17 апр. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

The Gallery by BestWebSoft WordPress plugin before 4.7.0 does not perform proper sanitization of gallery information, leading to a Stored Cross-Site Scription vulnerability. The attacker must have at least the privileges of the Author role.

The Gallery by BestWebSoft WordPress plugin before 4.7.0 does not perform proper sanitization of gallery information, leading to a Stored Cross-Site Scription vulnerability. The attacker must have at least the privileges of the Author role.

EPSS

Процентиль: 34%
0.00137
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
почти 3 года назад

The Gallery by BestWebSoft WordPress plugin before 4.7.0 does not perform proper sanitization of gallery information, leading to a Stored Cross-Site Scription vulnerability. The attacker must have at least the privileges of the Author role.

EPSS

Процентиль: 34%
0.00137
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79