Логотип exploitDog
bind:CVE-2025-8282
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-8282

Количество 2

Количество 2

nvd логотип

CVE-2025-8282

5 месяцев назад

The SureForms WordPress plugin before 1.9.1 does not sanitise and escape some parameters when outputing them in the page, which could allow admin and above users to perform Cross-Site Scripting attacks.

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-m7f8-rpm5-xmqj

5 месяцев назад

The SureForms WordPress plugin before 1.9.1 does not sanitise and escape some parameters when outputing them in the page, which could allow admin and above users to perform Cross-Site Scripting attacks.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-8282

The SureForms WordPress plugin before 1.9.1 does not sanitise and escape some parameters when outputing them in the page, which could allow admin and above users to perform Cross-Site Scripting attacks.

CVSS3: 3.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-m7f8-rpm5-xmqj

The SureForms WordPress plugin before 1.9.1 does not sanitise and escape some parameters when outputing them in the page, which could allow admin and above users to perform Cross-Site Scripting attacks.

CVSS3: 6.1
0%
Низкий
5 месяцев назад

Уязвимостей на страницу