← volver
CVE-2022-23912

AP Custom Testimonial < 1.4.8 - Reflected Cross-Site Scripting

EPSS 0.9%CWE-79
The Testimonial WordPress Plugin WordPress plugin before 1.4.7 does not sanitise and escape the id parameter before outputting it back in an attribute, leading to a Reflected cross-Site Scripting

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →