Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fpx6-qj6w-4m83

Опубликовано: 16 янв. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

The Contact Form Entries WordPress plugin before 1.3.0 does not validate data when its output in a CSV file, which could lead to CSV injection.

The Contact Form Entries WordPress plugin before 1.3.0 does not validate data when its output in a CSV file, which could lead to CSV injection.

EPSS

Процентиль: 56%
0.00335
Низкий

7.8 High

CVSS3

Дефекты

CWE-1236

Связанные уязвимости

CVSS3: 7.8
nvd
около 2 лет назад

The Contact Form Entries WordPress plugin before 1.3.0 does not validate data when its output in a CSV file, which could lead to CSV injection.

EPSS

Процентиль: 56%
0.00335
Низкий

7.8 High

CVSS3

Дефекты

CWE-1236