CVE-2022-43497

All FrameworksWordPressCWE-79CVE-2022-43497

CVE-2022-43497

State: PUBLISHED · Published: 2022-12-05 · Updated: 2025-04-24 · Assigner: jpcert
Description
Cross-site scripting vulnerability in WordPress versions prior to 6.0.3 allows a remote unauthenticated attacker to inject an arbitrary script. The developer also provides new patched releases for all versions since 3.7.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2022/43xxx/CVE-2022-43497.json