CVE-2022-28221

The CleanTalk AntiSpam plugin <= 5.173 for WordPress is vulnerable to Reflected Cross-Site Scripting (XSS) via the $_REQUEST['page'] parameter in`/lib/Cleantalk/ApbctWP/FindSpam/ListTable/Comments.php`
Configurations

Configuration 1 (hide)

cpe:2.3:a:cleantalk:antispam:*:*:*:*:*:wordpress:*:*

History

No history.

Information

Published : 2022-04-19 21:15

Updated : 2022-04-28 03:42


NVD link : CVE-2022-28221

Mitre link : CVE-2022-28221

CVE.ORG link : CVE-2022-28221


JSON object : View

Products Affected

cleantalk

  • antispam
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')