CVE-2022-1470

Publication date

2022-06-27 08:56:46

Family

WPScan

State

PUBLISHED

Description

The Ultimate WooCommerce CSV Importer WordPress plugin through 2.0 does not sanitise and escape the imported data before outputting it back in the page, leading to a Reflected Cross-Site Scripting