CVE-2022-2654 Information

Description

The Classima WordPress theme before 2.1.11 and some of its required plugins (Classified Listing before 2.2.14 Classified Listing Pro before 2.0.20 Classified Listing Store & Membership before 1.4.20 and Classima Core before 1.10) do not escape a parameter before outputting it back in attributes leading to Reflected Cross-Site Scripting

Reference

https://wpscan.com/vulnerability/845f44ca-f572-48d7-a19a-89cace0b8993

Share on: