Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hmgx-5p26-ccf2

Опубликовано: 20 мая 2026
Источник: github
Github: Не прошло ревью

Описание

The Email Encoder WordPress plugin before 2.4.7 does not escape email addresses retrieved via user input, allowing unauthenticated attackers to perform Stored XSS attacks

The Email Encoder WordPress plugin before 2.4.7 does not escape email addresses retrieved via user input, allowing unauthenticated attackers to perform Stored XSS attacks

EPSS

Процентиль: 16%
0.00252
Низкий

Связанные уязвимости

CVSS3: 6.1
nvd
4 месяца назад

The Email Encoder WordPress plugin before 2.4.7 does not escape email addresses retrieved via user input, allowing unauthenticated attackers to perform Stored XSS attacks

EPSS

Процентиль: 16%
0.00252
Низкий