Unrated severityNVD Advisory· Published Dec 6, 2022· Updated Apr 28, 2026
WP Smart Import plugin <= 1.0.2 is vulnerable to Cross Site Scripting (XSS)
CVE-2022-40209
Description
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Xylus Themes WP Smart Import plugin <= 1.0.2 on WordPress.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <=1.0.2
- Xylus Themes/WP Smart Importv5Range: n/a
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.