The Permalink Manager Lite WordPress plugin before 2.2.15 and Permalink Manager Pro WordPress plugin before 2.2.15 do not sanitise and escape query parameters before outputting them back in the debug page, leading to a Reflected Cross-Site Scripting issue
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2022-02-14T09:21:04

Updated: 2024-08-02T23:18:42.547Z

Reserved: 2022-01-12T00:00:00

Link: CVE-2022-0201

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-02-14T12:15:16.373

Modified: 2022-02-19T04:21:03.883

Link: CVE-2022-0201

cve-icon Redhat

No data.