Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-98c2-3mpw-gw7c

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Visitors WordPress plugin through 0.3 is affected by an Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability. The plugin would display the user's user agent string without validation or encoding within the WordPress admin panel.

The Visitors WordPress plugin through 0.3 is affected by an Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability. The plugin would display the user's user agent string without validation or encoding within the WordPress admin panel.

EPSS

Процентиль: 85%
0.0265
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
больше 4 лет назад

The Visitors WordPress plugin through 0.3 is affected by an Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability. The plugin would display the user's user agent string without validation or encoding within the WordPress admin panel.

EPSS

Процентиль: 85%
0.0265
Низкий

Дефекты

CWE-79