CVE-2012-4226
Qpw.famvanakkeren Quick Post Widget - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in Quick Post Widget plugin 1.9.1 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) Title, (2) Content, or (3) New category field to wordpress/ or (4) query string to wordpress/.
References (5)
Scores
EPSS
0.0023
EPSS Percentile
45.9%
Details
CWE
CWE-79
Status
published
Products (2)
qpw.famvanakkeren/quick_post_widget
n/a/n/a
Published
Sep 03, 2014
Tracked Since
Feb 18, 2026