6.5 MEDIUM
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): LOW
- User interaction (UI): REQUIRED
- Scope (S): CHANGED
- Confidentiality impact (C): LOW
- Integrity impact (I): LOW
- Availability impact (A): LOW
WordPress Top 10 <= 4.1.0 - Cross Site Scripting (XSS) Vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ajay Top 10 allows Stored XSS. This issue affects Top 10: from n/a through 4.1.0.
References
Affected products
- =<4.1.0
Matching in nixpkgs
pkgs.budgie-desktop
Feature-rich, modern desktop designed to keep out the way of the user
-
nixos-unstable -
- nixpkgs-unstable 10.9.2
pkgs.gnomeExtensions.serenity-desktop
A Per-Monitor-Workspace window manager designed for productive use. It offers two main features:
-
nixos-unstable -
- nixpkgs-unstable 10
Package maintainers
-
@bobby285271 Bobby Rong <rjl931189261@126.com>
-
@getchoo Seth Flynn <getchoo@tuta.io>
-
@honnip Jung seungwoo <me@honnip.page>