Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qj4c-xvxc-5hqj

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A Stored Cross-Site Scripting vulnerability was discovered in the Yoast SEO WordPress plugin before 3.4.1, which had built-in blacklist filters which were blacklisting Parenthesis as well as several functions such as alert but bypasses were found.

A Stored Cross-Site Scripting vulnerability was discovered in the Yoast SEO WordPress plugin before 3.4.1, which had built-in blacklist filters which were blacklisting Parenthesis as well as several functions such as alert but bypasses were found.

EPSS

Процентиль: 56%
0.00334
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
nvd
почти 5 лет назад

A Stored Cross-Site Scripting vulnerability was discovered in the Yoast SEO WordPress plugin before 3.4.1, which had built-in blacklist filters which were blacklisting Parenthesis as well as several functions such as alert but bypasses were found.

EPSS

Процентиль: 56%
0.00334
Низкий

Дефекты

CWE-79