CVE-2022-0892
11.04.2022, 15:15
The Export All URLs WordPress plugin before 4.2 does not sanitise and escape the CSV filename before outputting it back in the page, leading to a Reflected Cross-Site Scripting
| Vendor | Product | Version |
|---|---|---|
| atlasgondal | export_all_urls | 𝑥 < 4.2 |
𝑥
= Vulnerable software versions