Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-21747
HistoryNov 04, 2021 - 12:00 a.m.

WordPress Restaurant Menu by MotoPress Plugin Cross-Site Scripting Vulnerability

2021-11-0400:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
wordpress
restaurant menu
motopress
cross-site scripting
vulnerability
php
mysql
javascript
version 2.4.0

EPSS

0.001

Percentile

24.8%

WordPress is the WordPress Foundation’s suite of blogging platforms developed using the PHP language. The platform supports the hosting of personal blog sites on servers with PHP and MySQL. WordPress Restaurant Menu by MotoPress Plugin in version 2.4.0 and earlier has a cross-site scripting vulnerability that stems from the plugin’s inability to properly clean up or escape input when creating new menu items, which could be exploited by an attacker to execute JavaScript code.

EPSS

0.001

Percentile

24.8%