Lucene search

K
patchstackNguy Minh Tuan (Patchstack Alliance)PATCHSTACK:E66B25462AE761C9FD5F5B968A9043A1
HistorySep 28, 2022 - 12:00 a.m.

WordPress Store Locator plugin <= 1.4.5 - Cross-Site Scripting (XSS) via Cross-Site Request Forgery (CSRF) vulnerability

2022-09-2800:00:00
Nguy Minh Tuan (Patchstack Alliance)
patchstack.com
8
wordpress
store locator
xss
csrf
vulnerability
patchstack alliance
update

EPSS

0.001

Percentile

20.9%

Cross-Site Scripting (XSS) via Cross-Site Request Forgery (CSRF) vulnerability was discovered by Nguy Minh Tuan (Patchstack Alliance) in the WordPress Store Locator plugin (versions <= 1.4.5).

Solution

           Update the WordPress Store Locator WordPress plugin to the latest available version (at least 1.4.6).

EPSS

0.001

Percentile

20.9%

Related for PATCHSTACK:E66B25462AE761C9FD5F5B968A9043A1