Medium severity4.8NVD Advisory· Published Nov 17, 2022· Updated Jun 17, 2026
CVE-2022-40694
CVE-2022-40694
Description
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in News Announcement Scroll plugin <= 8.8.8 on WordPress.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: <=8.8.8
<= 8.8.8+ 1 more
- (no CPE)range: <= 8.8.8
- cpe:2.3:a:storeapps:news_announcement_scroll:*:*:*:*:*:wordpress:*:*range: <=8.8.8
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.