Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-56236
HistoryJul 13, 2022 - 12:00 a.m.

WordPress core plugin for kitestudio plugin跨站脚本漏洞

2022-07-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
16
wordpress
kitestudio
cross-site scripting
vulnerability
attack
php
cnvd

EPSS

0.001

Percentile

44.3%

WordPress and WordPress plugin are both products of the WordPress Foundation. WordPress is a set of blogging platforms developed using the PHP language. The WordPress plugin is an application plugin. versions of the WordPress core plugin for kitestudio plugin prior to 2.3.1 are vulnerable to a cross-site scripting vulnerability that stems from a failure to clean and escape certain settings, which could be exploited by attackers to perform cross-site scripting attacks. can be exploited to perform cross-site scripting attacks.

EPSS

0.001

Percentile

44.3%