Описание
The Transbank Webpay WordPress plugin before 1.14.0 does not sanitize and escape logs to be displayed, allowing unauthenticated users to perform Stored XSS attacks against logged in administrator
EPSS
Процентиль: 22%
0.00293
Низкий
7.1 High
CVSS3
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 7.1
github
около 1 месяца назад
The Transbank Webpay WordPress plugin before 1.14.0 does not sanitize and escape logs to be displayed, allowing unauthenticated users to perform Stored XSS attacks against logged in administrator
EPSS
Процентиль: 22%
0.00293
Низкий
7.1 High
CVSS3
Дефекты
CWE-79