cleantalk
Vulnerabilities and Security Researches

Advanced WordPress Reset – Debug, Recover & Reset WP, CVE-2022-2181

CVE, Research URL

CVE-2022-2181

Published on
Aug 01, 2022
Research Description
The Advanced WordPress Reset WordPress plugin before 1.6 does not escape some generated URLs before outputting them back in href attributes of admin dashboard pages, leading to Reflected Cross-Site Scripting
Affected versions
max 1.6.
Status
vulnerable