Lucene search

K
wpexploitWpvulndbWPEX-ID:96E9A7FD-9AB8-478E-9420-4BCA2A0B23A1
HistoryApr 16, 2021 - 12:00 a.m.

404 SEO Redirection <= 1.3 - Reflected Cross-Site Scripting (XSS)

2021-04-1600:00:00
wpvulndb
84
vulnerability
404 seo redirection
cross-site scripting

EPSS

0.001

Percentile

37.3%

The tab parameter of the settings page of the plugin is vulnerable to a reflected Cross-Site Scripting (XSS) issue as user input is not properly sanitised or escaped before being output in an attribute.

The PoC will be displayed once the issue has been remediated

EPSS

0.001

Percentile

37.3%

Related for WPEX-ID:96E9A7FD-9AB8-478E-9420-4BCA2A0B23A1