CVE-2022-2311
PoC —CVSS 3.1
6.1 medium
EPSS
<1%p41
Published
()
Modified
Description
The Find and Replace All WordPress plugin before 1.3 does not sanitize and escape some parameters from its setting page before outputting them back to the user, leading to a Reflected Cross-Site Scripting issue.
- Vendors
- find and replace all project
- Products
- find and replace all
- Ecosystems
- WordPress
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.