CVE-2022-1153

CVE-2022-1153

The LayerSlider WordPress plugin before 7.1.2 does not sanitise and escape Project’s slug before outputting it back in various place, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed

Source: CVE-2022-1153

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다