VYPR

Gutenberg

by Gutenberg Project

CVEs (1)

  • CVE-2022-33994LowJul 30, 2022
    risk 0.20cvss 3.0epss 0.01

    The Gutenberg plugin through 13.7.3 for WordPress allows stored XSS by the Contributor role via an SVG document to the "Insert from URL" feature. NOTE: the XSS payload does not execute in the context of the WordPress instance's domain; however, analogous attempts by…