cleantalk
Vulnerabilities and Security Researches

WP-Paginate, CVE-2022-2050

CVE, Research URL

CVE-2022-2050

Application

WP-Paginate

Published on
Jul 11, 2022
Research Description
The WP-Paginate WordPress plugin before 2.1.9 does not escape one of its settings, which could allow high privilege users to perform Stored Cross-Site Scripting attacks when unfiltered_html is disallowed
Affected versions
max 2.1.9.
Status
vulnerable