CVE-2022-2887 Information
Sep 17, 2022
cve
Description
The WP Server Health Stats WordPress plugin before 1.7.0 does not escape some of its settings which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.
Reference
https://wpscan.com/vulnerability/237541d5-c1a5-44f2-8e5f-82457b8f9497
Share on: