ZeroHour

CVE-2022-1192

PoC
CVSS 3.1
6.1 medium
EPSS
3%p86
Published
()
Modified
Description

The Turn off all comments WordPress plugin through 1.0 does not sanitise and escape the rows parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting

Vendors
turn off all comments project
Products
turn off all comments
Ecosystems
WordPress
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.