Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fh98-fx6f-2pf6

Опубликовано: 31 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

The External Links in New Window / New Tab WordPress plugin before 1.43 does not ensure window.opener is set to "null" when links to external sites are clicked, which may enable tabnabbing attacks to occur.

The External Links in New Window / New Tab WordPress plugin before 1.43 does not ensure window.opener is set to "null" when links to external sites are clicked, which may enable tabnabbing attacks to occur.

EPSS

Процентиль: 69%
0.00596
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-1022

Связанные уязвимости

CVSS3: 6.5
nvd
больше 3 лет назад

The External Links in New Window / New Tab WordPress plugin before 1.43 does not ensure window.opener is set to "null" when links to external sites are clicked, which may enable tabnabbing attacks to occur.

EPSS

Процентиль: 69%
0.00596
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-1022