CVE-2022-28290
Description
Reflective Cross-Site Scripting vulnerability in WordPress Country Selector Plugin Version 1.6.5. The XSS payload executes whenever the user tries to access the country selector page with the specified payload as a part of the HTTP request
CWE
- CWE-79 — CWE-79
Affected
- n/a / WordPress Country Selector Plugin — v=Version 1.6.5 [affected]
CVSS
- (none)
References
- https://cybersecurityworks.com/zerodays/cve-2022-28290-reflected-cross-site-scripting-in-welaunch.html x_refsource_MISC
Source
cvelistV5-main/cves/2022/28xxx/CVE-2022-28290.json