Multiple Authenticated (admin+) Persistent Cross-Site Scripting (XSS) vulnerabilities in Adam Skaat's Countdown & Clock plugin <= 2.3.2 at WordPress via &ycd-countdown-width, &ycd-progress-height, &ycd-progress-width, &ycd-button-margin-top, &ycd-button-margin-right, &ycd-button-margin-bottom, &ycd-button-margin-left, &ycd-circle-countdown-before-countdown, &ycd-circle-countdown-after-countdown vulnerable parameters.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published: 2022-05-06T17:37:28.491208Z

Updated: 2024-09-17T04:14:55.130Z

Reserved: 2022-04-18T00:00:00

Link: CVE-2022-29422

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-05-06T18:15:10.647

Modified: 2022-05-16T16:31:23.163

Link: CVE-2022-29422

cve-icon Redhat

No data.