ZeroHour

CVE-2023-7084

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p34
Published
()
Modified
Description

The Voting Record WordPress plugin through 2.0 is missing sanitisation as well as escaping, which could allow any authenticated users, such as subscriber to perform Stored XSS attacks

Vendors
davidjmiller
Products
voting record
Ecosystems
WordPress
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.