CVE-2022-4784 Information
Feb 22, 2023
cve
Description
The Hueman Addons WordPress plugin through 2.3.3 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks
Reference
https://wpscan.com/vulnerability/a30c6f1e-62fd-493d-ad5e-1b55ceec62a9
Share on: