CVE-2022-44897 Information

Description

A cross-site scripting (XSS) vulnerability in ApolloTheme AP PageBuilder component through 2.4.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the show_number parameter.

Reference

http://apollotheme.com https://github.com/daaaalllii/cve-s/blob/main/CVE-2022-44897/poc.txt

Share on: