Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6pww-hfc9-g964

Опубликовано: 16 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

The Voting Record WordPress plugin through 2.0 is missing sanitisation as well as escaping, which could allow any authenticated users, such as subscriber to perform Stored XSS attacks

The Voting Record WordPress plugin through 2.0 is missing sanitisation as well as escaping, which could allow any authenticated users, such as subscriber to perform Stored XSS attacks

EPSS

Процентиль: 37%
0.00156
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
около 2 лет назад

The Voting Record WordPress plugin through 2.0 is missing sanitisation as well as escaping, which could allow any authenticated users, such as subscriber to perform Stored XSS attacks

EPSS

Процентиль: 37%
0.00156
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-79