Medium severity6.1NVD Advisory· Published Apr 19, 2022· Updated Jun 17, 2026
CVE-2022-28222
CVE-2022-28222
Description
The CleanTalk AntiSpam plugin <= 5.173 for WordPress is vulnerable to Reflected Cross-Site Scripting (XSS) via the $_REQUEST['page'] parameter in/lib/Cleantalk/ApbctWP/FindSpam/ListTable/Users.php
Affected products
3- CleanTalk/CleanTalk AntiSpamv5Range: 5.173
- Range: <=5.173
Patches
Vulnerability mechanics
References
1- www.wordfence.com/blog/2022/03/reflected-xss-in-spam-protection-antispam-firewall-by-cleantalk/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.