cve/2022/CVE-2022-4310.md
2024-06-18 02:51:15 +02:00

800 B

CVE-2022-4310

Description

The Slimstat Analytics WordPress plugin before 4.9.3 does not sanitise and escape the URI when logging requests, which could allow unauthenticated attackers to perform Stored Cross-Site Scripting attacks against logged in admin viewing the logs

POC

Reference

Github