Advanced WordPress Reset – Debug, Recover & Reset WP, CVE-2022-2181
- CVE, Research URL
- Published on
- Aug 01, 2022
- Research Description
- The Advanced WordPress Reset WordPress plugin before 1.6 does not escape some generated URLs before outputting them back in href attributes of admin dashboard pages, leading to Reflected Cross-Site Scripting
- Affected versions
-
max 1.6.
- Status
-
vulnerable