Описание
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in softdiscover Zigaform – Form Builder Lite allows Stored XSS. This issue affects Zigaform – Form Builder Lite: from n/a through 7.4.2.
Уязвимые конфигурации
Конфигурация 1Версия до 7.4.3 (исключая)
cpe:2.3:a:softdiscover:zigaform:*:*:*:*:*:wordpress:*:*
EPSS
Процентиль: 25%
0.00085
Низкий
7.1 High
CVSS3
6.1 Medium
CVSS3
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 7.1
github
11 месяцев назад
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in softdiscover Zigaform – Form Builder Lite allows Stored XSS. This issue affects Zigaform – Form Builder Lite: from n/a through 7.4.2.
EPSS
Процентиль: 25%
0.00085
Низкий
7.1 High
CVSS3
6.1 Medium
CVSS3
Дефекты
CWE-79