Lucene search

K
hackeroneTvmbugH1:1841042
HistoryJan 19, 2023 - 11:35 p.m.

Nord Security: Stored XSS at nordvpn.com

2023-01-1923:35:23
tvmbug
hackerone.com
11
nord security
stored xss
wordpress
server instance
isolated
bug bounty

EPSS

0.001

Percentile

41.9%

XSS was found in our marketing website running on WordPress. Due to our infrastructure’s configuration this particular vulnerability is isolated to a single server instance. Furthermore, server settings prevent the propagation of uploaded files to other WordPress nodes, ensuring the issue remains contained

EPSS

0.001

Percentile

41.9%