Showing 1 vulnerability on this page for gwyn\'s_imagemap_selector

Signals CISA KEV Ransomware Nuclei
gwyn\'s_imagemap_selector_project vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Gwyn's Imagemap Selector <= 0.3.3 - Reflected Cross-Site Scripting

The Gwyn's Imagemap Selector WordPress plugin through 0.3.3 does not sanitise and escape some parameters before outputting them back in attributes, leading to a Reflected Cross-Site Scripting.

CWE-79May 23, 20221 related artifact
CVSS6.1v3.1EPSS2.18%PoCs0SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX