CVE-2022-1583
PoC —CVSS 3.1
6.5 medium
EPSS
1%p69
Published
()
Modified
Description
The External Links in New Window / New Tab WordPress plugin before 1.43 does not ensure window.opener is set to "null" when links to external sites are clicked, which may enable tabnabbing attacks to occur.
- Vendors
- webfactoryltd
- Products
- external links in new window \/ new tab
- Ecosystems
- WordPress
- Weakness
- CWE-1022
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.