Логотип exploitDog
bind:CVE-2024-4749
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-4749

Количество 2

Количество 2

nvd логотип

CVE-2024-4749

больше 1 года назад

The wp-eMember WordPress plugin before 10.3.9 does not sanitize and escape the "fieldId" parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting.

CVSS3: 8.3
EPSS: Низкий
github логотип

GHSA-4x3h-fqm2-2c9h

больше 1 года назад

The wp-eMember WordPress plugin before 10.3.9 does not sanitize and escape the "fieldId" parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting.

CVSS3: 8.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-4749

The wp-eMember WordPress plugin before 10.3.9 does not sanitize and escape the "fieldId" parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting.

CVSS3: 8.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-4x3h-fqm2-2c9h

The wp-eMember WordPress plugin before 10.3.9 does not sanitize and escape the "fieldId" parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting.

CVSS3: 8.3
0%
Низкий
больше 1 года назад

Уязвимостей на страницу