Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gqp5-7wwf-v82x

Опубликовано: 08 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

The Link Library WordPress plugin before 7.9.4 does not sanitise and escape a parameter before reflecting it back in a response, allowing unauthenticated attackers to perform Reflected Cross-Site Scripting attacks against users who can be tricked into performing an action.

The Link Library WordPress plugin before 7.9.4 does not sanitise and escape a parameter before reflecting it back in a response, allowing unauthenticated attackers to perform Reflected Cross-Site Scripting attacks against users who can be tricked into performing an action.

EPSS

Процентиль: 6%
0.00162
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
около 1 месяца назад

The Link Library WordPress plugin before 7.9.4 does not sanitise and escape a parameter before reflecting it back in a response, allowing unauthenticated attackers to perform Reflected Cross-Site Scripting attacks against users who can be tricked into performing an action.

EPSS

Процентиль: 6%
0.00162
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79