Lucene search

K
wpvulndbWpvulndbWPVDB-ID:DC0ED4DE-D2C4-44AD-AE09-1161A5D87FBE
HistoryNov 25, 2021 - 12:00 a.m.

Awesome Support < 6.0.7 - Reflected Cross-Site Scripting

2021-11-2500:00:00
wpscan.com
7
awesome support
plugin
xss
vulnerability

EPSS

0.001

Percentile

22.7%

The plugin does not sanitise and escape the id and assignee parameter before outputting them back in the page, leading to a Reflected Cross-Site Scripting issue

EPSS

0.001

Percentile

22.7%

Related for WPVDB-ID:DC0ED4DE-D2C4-44AD-AE09-1161A5D87FBE