The Yellow Yard Searchbar WordPress plugin before 2.8.2 does not escape some URL parameters before outputting them back to the user, leading to Reflected Cross-Site Scripting
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/c9a106e1-29ae-47ad-907b-01086af3d3fb | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: WPScan
Published: 2023-02-08T09:27:51.906Z
Updated:
Reserved: 2022-06-15T20:46:36.606Z
Link: CVE-2022-2094
JSON object: View
NVD Information
Status : Modified
Published: 2023-02-08T10:15:09.157
Modified: 2023-11-07T03:46:12.680
Link: CVE-2022-2094
JSON object: View
Redhat Information
No data.
CWE
No CWE.