Security Advisory

CVE-2022-1582

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-05-30 08:36:01
Last updated 2024-08-03 00:10:03
Assigner WPScan
State PUBLISHED

Description

The External Links in New Window / New Tab WordPress plugin before 1.43 does not properly escape URLs it concatenates to onclick event handlers, which makes Stored Cross-Site Scripting attacks possible.