Beveiligingsadvies

CVE-2022-1187

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-04-19 20:26:35
Laatst bijgewerkt 2026-04-08 16:44:10
Toegewezen door Wordfence
CVSS-score 6.1
Status PUBLISHED

Beschrijving

The WordPress WP YouTube Live Plugin is vulnerable to Reflected Cross-Site Scripting via POST data found in the ~/inc/admin.php file which allows unauthenticated attackers to inject arbitrary web scripts in versions up to, and including, 1.7.21.