CVE-2022-2627
31.10.2022, 16:15
The Newspaper WordPress theme before 12 does not sanitise a parameter before outputting it back in an HTML attribute via an AJAX action, leading to a Reflected Cross-Site Scripting.
Vendor | Product | Version |
---|---|---|
tagdiv | newspaper | 𝑥 < 12 |
𝑥
= Vulnerable software versions