Unrated severityNVD Advisory· Published Jun 6, 2022· Updated Aug 3, 2024
WP Born Babies <= 1.0 - Contributor+ Stored Cross-Site Scripting
CVE-2022-1506
Description
The WP Born Babies WordPress plugin through 1.0 does not sanitise and escape some of its fields, which could allow users with a role as low as contributor to perform Cross-Site Scripting attacks
Affected products
1- Range: 1.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- wpscan.com/vulnerability/ee4f6786-27e4-474c-85e0-715b0c0f2776mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.