Medium severity6.1NVD Advisory· Published Mar 14, 2022· Updated Jun 17, 2026
CVE-2022-0147
CVE-2022-0147
Description
The Cookie Information | Free GDPR Consent Solution WordPress plugin before 2.0.8 does not escape user data before outputting it back in attributes in the admin dashboard, leading to a Reflected Cross-Site Scripting issue
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:cookieinformation:wp-gdpr-compliance:*:*:*:*:*:wordpress:*:*Range: <2.0.8
- Cookie Information/Cookie Information | Free GDPR Consent Solution WordPress plugindescription
- Range: <2.0.8
Patches
Vulnerability mechanics
References
2- plugins.trac.wordpress.org/changeset/2681371nvdPatchRelease NotesThird Party Advisory
- wpscan.com/vulnerability/2c735365-69c0-4652-b48e-c4a192dfe0d1nvdExploitPatchThird Party Advisory
News mentions
0No linked articles in our index yet.