mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-29 17:50:34 +00:00
834 B
834 B
CVE-2022-0626
Description
The Advanced Admin Search WordPress plugin before 1.1.6 does not sanitize and escape some parameters before outputting them back in an admin page, leading to a Reflected Cross-Site Scripting.
POC
Reference
- https://wpscan.com/vulnerability/d72164e2-8449-4fb1-aad3-bfa86d645e47
- https://wpscan.com/vulnerability/d72164e2-8449-4fb1-aad3-bfa86d645e47