ID | CVE-2022-1562 | ||||||
Sažetak | The Enable SVG WordPress plugin before 1.4.0 does not sanitise uploaded SVG files, which could allow users with a role as low as Author to upload a malicious SVG containing XSS payloads | ||||||
Reference | |||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:N/AC:M/Au:S/C:N/I:P/A:N | ||||||
Zadnje važnije ažuriranje | 08-06-2022 - 15:56 | ||||||
Objavljeno | 30-05-2022 - 09:15 |