cleantalk
Vulnerabilities and Security Researches

Countdown, Coming Soon, Maintenance – Countdown & Clock, CVE-2022-0601

CVE, Research URL

CVE-2022-0601

Published on
Mar 14, 2022
Research Description
The Countdown, Coming Soon, Maintenance WordPress plugin before 2.2.9 does not sanitize and escape the post parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting.
Affected versions
Min -, max 2.2.9.
Status
vulnerable