cleantalk
Vulnerabilities and Security Researches

Shield Security – Smart Bot Blocking & Intrusion Prevention Security, CVE-2022-0211

CVE, Research URL

CVE-2022-0211

Published on
Feb 21, 2022
Research Description
The Shield Security WordPress plugin before 13.0.6 does not sanitise and escape admin notes, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed.
Affected versions
max 13.0.6.
Status
vulnerable