Medium severity4.8NVD Advisory· Published Aug 15, 2022· Updated Jun 17, 2026
CVE-2022-2384
CVE-2022-2384
Description
The Digital Publications by Supsystic WordPress plugin before 1.7.4 does not sanitise and escape its settings, allowing high privilege users such as admin to perform cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:supsystic:digital_publications_by_supsystic:*:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:supsystic:digital_publications_by_supsystic:*:*:*:*:*:wordpress:*:*range: <1.7.4
- (no CPE)range: 1.7.4
- Range: <1.7.4
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/0917b964-f347-487e-b8d7-c4f09c290fe5nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.