Security Advisory

CVE-2022-2565

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-09-05 12:35:21
Last updated 2024-08-03 00:39:08
Assigner WPScan
State PUBLISHED

Description

The Simple Payment Donations & Subscriptions WordPress plugin before 4.2.1 does not sanitise and escape user input given in its forms, which could allow unauthenticated attackers to perform Cross-Site Scripting attacks against admins