cleantalk
Vulnerabilities and Security Researches

Fast Flow, CVE-2022-1269

CVE, Research URL

CVE-2022-1269

Application

Fast Flow

Published on
May 02, 2022
Research Description
The Fast Flow WordPress plugin before 1.2.12 does not sanitise and escape the page parameter before outputting back in an attribute in an admin dashboard, leading to a Reflected Cross-Site Scripting
Affected versions
max 1.2.11.
Status
vulnerable