Lucene search

K
wpvulndbWpvulndbWPVDB-ID:9374527C-FBF8-4A8E-892E-6082943F15CB
HistoryMar 03, 2023 - 12:00 a.m.

Yet Another Stars Rating < 3.1.3 - Subscriber+ Stored XSS

2023-03-0300:00:00
wpscan.com
5
plugin
sanitization
parameters
subscriber role

0.001 Low

EPSS

Percentile

27.3%

The plugin does not sanitise and escape some parameters, which could allow users with a role as low as Subscriber to perform Stored Cross-Site Scripting attacks

CPENameOperatorVersion
yet-another-stars-ratinglt3.1.3

0.001 Low

EPSS

Percentile

27.3%

Related for WPVDB-ID:9374527C-FBF8-4A8E-892E-6082943F15CB