WordPress All Export <1.3.6 - Cross-Site Scripting
WordPress All Export plugin before version 1.3.6 does not escape some URLs before outputting them back in attributes, leading to reflected cross-site scripting.
all-exportPoC 已收录
CVSS5.4
共找到 1 条公开漏洞记录
WordPress All Export plugin before version 1.3.6 does not escape some URLs before outputting them back in attributes, leading to reflected cross-site scripting.