CVE-2022-0288
21.02.2022, 11:15
The Ad Inserter WordPress plugin before 2.7.10, Ad Inserter Pro WordPress plugin before 2.7.10 do not sanitise and escape the html_element_selection parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting
Vendor | Product | Version |
---|---|---|
ad_inserter_pro_project | ad_inserter_pro | 𝑥 < 2.7.10 |
ad_inserter_project | ad_inserter | 𝑥 < 2.7.10 |
𝑥
= Vulnerable software versions