Логотип exploitDog
bind:CVE-2022-0189
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-0189

Количество 2

Количество 2

nvd логотип

CVE-2022-0189

почти 4 года назад

The WP RSS Aggregator WordPress plugin before 4.20 does not sanitise and escape the id parameter in the wprss_fetch_items_row_action AJAX action before outputting it back in the response, leading to a Reflected Cross-Site Scripting

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-mfv7-34v2-2q9m

почти 4 года назад

The WP RSS Aggregator WordPress plugin before 4.20 does not sanitise and escape the id parameter in the wprss_fetch_items_row_action AJAX action before outputting it back in the response, leading to a Reflected Cross-Site Scripting

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-0189

The WP RSS Aggregator WordPress plugin before 4.20 does not sanitise and escape the id parameter in the wprss_fetch_items_row_action AJAX action before outputting it back in the response, leading to a Reflected Cross-Site Scripting

CVSS3: 6.1
3%
Низкий
почти 4 года назад
github логотип
GHSA-mfv7-34v2-2q9m

The WP RSS Aggregator WordPress plugin before 4.20 does not sanitise and escape the id parameter in the wprss_fetch_items_row_action AJAX action before outputting it back in the response, leading to a Reflected Cross-Site Scripting

CVSS3: 6.1
3%
Низкий
почти 4 года назад

Уязвимостей на страницу