Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wqqh-h744-mmw7

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Goto WordPress theme before 2.0 does not sanitise the keywords and start_date GET parameter on its Tour List page, leading to an unauthenticated reflected Cross-Site Scripting issue.

The Goto WordPress theme before 2.0 does not sanitise the keywords and start_date GET parameter on its Tour List page, leading to an unauthenticated reflected Cross-Site Scripting issue.

EPSS

Процентиль: 96%
0.26734
Средний

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
почти 5 лет назад

The Goto WordPress theme before 2.0 does not sanitise the keywords and start_date GET parameter on its Tour List page, leading to an unauthenticated reflected Cross-Site Scripting issue.

EPSS

Процентиль: 96%
0.26734
Средний

Дефекты

CWE-79