logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2022-3847

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2022-3847

Description:
The Showing URL in QR Code WordPress plugin through 0.0.1 does not have CSRF check when updating its settings, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin or editor add Stored XSS payloads via a CSRF attack
Last updated date:
12/02/2022
Type:
exploit
Confidence:
HIGH
Date of publishing:
11/30/2022
Reference url to background

https://wpscan.com/vulnerability/a70ad549-2e09-44fb-b894-4271ad4a84f6

Type:
exploit
Confidence:
HIGH
Date of publishing:
12/02/2022
Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy