NA

CVE-2022-2152

Published: 15/08/2022 Updated: 26/10/2022
CVSS v3 Base Score: 4.8 | Impact Score: 2.7 | Exploitability Score: 1.7
VMScore: 0

Vulnerability Summary

The Duplicate Page and Post WordPress plugin prior to 2.8 does not sanitise and escape its settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

duplicate page and post project duplicate page and post