Логотип exploitDog
bind:CVE-2022-1005
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-1005

Количество 2

Количество 2

nvd логотип

CVE-2022-1005

больше 3 лет назад

The WP Statistics WordPress plugin before 13.2.2 does not sanitise the REQUEST_URI parameter before outputting it back in the rendered page, leading to Cross-Site Scripting (XSS) in web browsers which do not encode characters

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-wg9r-22jj-fhcq

больше 3 лет назад

The WP Statistics WordPress plugin before 13.2.2 does not sanitise the REQUEST_URI parameter before outputting it back in the rendered page, leading to Cross-Site Scripting (XSS) in web browsers which do not encode characters

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-1005

The WP Statistics WordPress plugin before 13.2.2 does not sanitise the REQUEST_URI parameter before outputting it back in the rendered page, leading to Cross-Site Scripting (XSS) in web browsers which do not encode characters

CVSS3: 6.1
0%
Низкий
больше 3 лет назад
github логотип
GHSA-wg9r-22jj-fhcq

The WP Statistics WordPress plugin before 13.2.2 does not sanitise the REQUEST_URI parameter before outputting it back in the rendered page, leading to Cross-Site Scripting (XSS) in web browsers which do not encode characters

CVSS3: 6.1
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу