Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-19824
HistoryJan 26, 2022 - 12:00 a.m.

WordPress Simple Download Monitor plugin cross-site scripting vulnerability

2022-01-2600:00:00
China National Vulnerability Database
www.cnvd.org.cn
11

0.001 Low

EPSS

Percentile

25.0%

WordPress is a set of blogging platforms developed by the WordPress Foundation using the PHP language. The platform supports personal blog sites on PHP and MySQL servers. cross-site scripting vulnerability exists in versions prior to Wordpress Plugin Simple Download Monitor 3.9.11, which stems from a lack of data validation filtering of user-supplied data and output. An attacker could use this vulnerability to execute JavaScript code on the client side.

0.001 Low

EPSS

Percentile

25.0%