Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rx4w-62p5-v393

Опубликовано: 11 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

Stored Cross-Site Scripting (XSS) vulnerability discovered in WordPress Comment Engine Pro plugin (versions <= 1.0), could be exploited by users with Editor or higher role.

Stored Cross-Site Scripting (XSS) vulnerability discovered in WordPress Comment Engine Pro plugin (versions <= 1.0), could be exploited by users with Editor or higher role.

EPSS

Процентиль: 39%
0.00176
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.8
nvd
около 4 лет назад

Stored Cross-Site Scripting (XSS) vulnerability discovered in WordPress Comment Engine Pro plugin (versions <= 1.0), could be exploited by users with Editor or higher role.

EPSS

Процентиль: 39%
0.00176
Низкий

Дефекты

CWE-79