6.1
CVSSv3

CVE-2022-1474

Published: 11/07/2022 Updated: 15/07/2022
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

The WP Event Manager WordPress plugin prior to 3.1.28 does not sanitise and escape its search before outputting it back in an attribute on the event dashboard, leading to a Reflected Cross-Site Scripting

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

wp-eventmanager wp event manager