CVE-2022-1773

Publication date

2022-06-13 12:42:46

Family

WPScan

State

PUBLISHED

Description

The WP Athletics WordPress plugin through 1.1.7 does not sanitise and escape a parameter before outputting back in an admin page, leading to a Reflected Cross-Site Scripting