Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rmfp-978v-2wq8

Опубликовано: 01 мар. 2022
Источник: github
Github: Не прошло ревью

Описание

The 15Zine WordPress theme before 3.3.0 does not sanitise and escape the cbi parameter before outputing it back in the response via the cb_s_a AJAX action, leading to a Reflected Cross-Site Scripting

The 15Zine WordPress theme before 3.3.0 does not sanitise and escape the cbi parameter before outputing it back in the response via the cb_s_a AJAX action, leading to a Reflected Cross-Site Scripting

EPSS

Процентиль: 85%
0.02579
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
почти 4 года назад

The 15Zine WordPress theme before 3.3.0 does not sanitise and escape the cbi parameter before outputing it back in the response via the cb_s_a AJAX action, leading to a Reflected Cross-Site Scripting

EPSS

Процентиль: 85%
0.02579
Низкий

Дефекты

CWE-79