Showing 1 vulnerability on this page for Permalink Manager Pro

Signals CISA KEV Ransomware Nuclei
Maciej Bis vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Permalink Manager < 2.2.15 - Reflected Cross-Site Scripting

The Permalink Manager Lite WordPress plugin before 2.2.15 and Permalink Manager Pro WordPress plugin before 2.2.15 do not sanitise and escape query parameters before outputting them back in the debug page, leading to a Reflected Cross-Site Scripting issue

CWE-79Feb 14, 20221 related artifact
CVSS6.1v3.1EPSS3.37%PoCs0SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX