mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-29 17:50:34 +00:00
819 B
819 B
CVE-2022-0620
Description
The Delete Old Orders WordPress plugin through 0.2 does not sanitize and escape the date parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting.
POC
Reference
- https://wpscan.com/vulnerability/77b92130-167c-4e8a-bde5-3fd1bd6982c6
- https://wpscan.com/vulnerability/77b92130-167c-4e8a-bde5-3fd1bd6982c6
Github
No PoCs found on GitHub currently.