CVE Published: 05/09/2022 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: WPScan |
Vendor: Unknown |
Product: Simple Payment Donations & Subscriptions Plugin by Paymattic – Best Payments Plugin for WP Status : PUBLISHED
CVE-2022-2565 Description
The Simple Payment Donations & Subscriptions WordPress plugin before 4.2.1 does not sanitise and escape user input given in its forms, which could allow unauthenticated attackers to perform Cross-Site Scripting attacks against admins