Lucene search

K
wpvulndbWpvulndbWPVDB-ID:0A1F98C3-7645-4BB9-9B40-0C5766ED36CD
HistoryJan 05, 2024 - 12:00 a.m.

WordPress Infinite Scroll - Ajax Load More < 6.2 - Contributor+ Stored XSS

2024-01-0500:00:00
wpscan.com
8
wordpress
infinite scroll
ajax load more
stored xss
security
cross-site scripting

6.1 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

14.0%

Description The plugin does not sanitise and escape some parameters, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks

CPENameOperatorVersion
eq6.2

6.1 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

14.0%

Related for WPVDB-ID:0A1F98C3-7645-4BB9-9B40-0C5766ED36CD