Medium severity6.1NVD Advisory· Published Feb 21, 2022· Updated Jun 17, 2026
CVE-2022-0288
CVE-2022-0288
Description
The Ad Inserter WordPress plugin before 2.7.10, Ad Inserter Pro WordPress plugin before 2.7.10 do not sanitise and escape the html_element_selection parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- WordPress/Ad Inserter WordPress plugindescription
- Range: <2.7.10
- cpe:2.3:a:ad_inserter_pro_project:ad_inserter_pro:*:*:*:*:*:wordpress:*:*Range: <2.7.10
- cpe:2.3:a:ad_inserter_project:ad_inserter:*:*:*:*:*:wordpress:*:*Range: <2.7.10
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/27b64412-33a4-462c-bc45-f81697e4fe42nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.