Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w9q6-vv8m-4f39

Опубликовано: 21 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) discovered in tarteaucitron.js – Cookies legislation & GDPR WordPress plugin (versions <= 1.5.4), vulnerable parameters "tarteaucitronEmail" and "tarteaucitronPass".

Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) discovered in tarteaucitron.js – Cookies legislation & GDPR WordPress plugin (versions <= 1.5.4), vulnerable parameters "tarteaucitronEmail" and "tarteaucitronPass".

EPSS

Процентиль: 30%
0.0011
Низкий

Дефекты

CWE-352

Связанные уязвимости

CVSS3: 6.1
nvd
около 4 лет назад

Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) discovered in tarteaucitron.js – Cookies legislation & GDPR WordPress plugin (versions <= 1.5.4), vulnerable parameters "tarteaucitronEmail" and "tarteaucitronPass".

EPSS

Процентиль: 30%
0.0011
Низкий

Дефекты

CWE-352