Описание
The slider import search feature and tab parameter of the Post Grid WordPress plugin before 2.1.8 settings are not properly sanitised before being output back in the pages, leading to Reflected Cross-Site Scripting issues
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.1.8 (исключая)
cpe:2.3:a:pickplugins:post_grid:*:*:*:*:*:wordpress:*:*
EPSS
Процентиль: 93%
0.11533
Средний
6.1 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-79
Связанные уязвимости
github
больше 3 лет назад
The slider import search feature and tab parameter of the Post Grid WordPress plugin before 2.1.8 settings are not properly sanitised before being output back in the pages, leading to Reflected Cross-Site Scripting issues
EPSS
Процентиль: 93%
0.11533
Средний
6.1 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-79