The Advanced Product Labels for... CVE-2022-0399

4.3 AV AC AU C I A
发布: 2022-03-14
修订: 2024-11-21

The Advanced Product Labels for WooCommerce WordPress plugin before 1.2.3.7 does not sanitise and escape the tax_color_set_type parameter before outputting it back in the berocket_apl_color_listener AJAX action's response, leading to a Reflected Cross-Site Scripting

0%
暂无可用Exp或PoC
当前有1条受影响产品信息