Описание
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mdedev Run Contests, Raffles, and Giveaways with ContestsWP contest-code-checker allows Reflected XSS.This issue affects Run Contests, Raffles, and Giveaways with ContestsWP: from n/a through <= 2.1.1.
EPSS
Процентиль: 34%
0.00138
Низкий
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 7.1
github
12 месяцев назад
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mdedev Run Contests, Raffles, and Giveaways with ContestsWP allows Reflected XSS. This issue affects Run Contests, Raffles, and Giveaways with ContestsWP: from n/a through 2.0.6.
EPSS
Процентиль: 34%
0.00138
Низкий
Дефекты
CWE-79