Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-76227
HistoryMar 31, 2022 - 12:00 a.m.

Wordpress Plugin WooCommerce Cross-Site Scripting Vulnerability

2022-03-3100:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
wordpress
woocommerce
cross-site scripting

EPSS

0.001

Percentile

43.5%

WordPress plugin is an application plugin for WordPress. A cross-site scripting vulnerability exists in versions of Wordpress Plugin WooCommerce prior to 2.7.1, which stems from a product wooce admin page that does not securely handle user input data. An attacker could exploit this vulnerability to cause reflected cross-site scripting (XSS).

EPSS

0.001

Percentile

43.5%