Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-59591
HistoryJul 19, 2021 - 12:00 a.m.

WordPress Event Espresso Core Cross-Site Scripting Vulnerability

2021-07-1900:00:00
China National Vulnerability Database
www.cnvd.org.cn
5
wordpress
event espresso core
cross-site scripting
vulnerability
remote attackers
html injection

EPSS

0.001

Percentile

50.8%

WordPress is a set of blogging platforms developed using the PHP language by the WordPress (Wordpress) Foundation. The platform supports setting up personal blog sites on servers with PHP and MySQL. WordPress Event Espresso Core plugin has a security vulnerability, version 4.10.6.p and below allows remote attackers to inject arbitrary web script or HTML via page parameters.

EPSS

0.001

Percentile

50.8%