Page Restriction WordPress < 1.2.7 - Admin+ Stored Cross-Site Scripting
CVE-2022-1027
4.8MEDIUM
What is CVE-2022-1027?
The Page Restriction WordPress (WP) WordPress plugin before 1.2.7 allows bad actors with administrator privileges to the settings page to inject Javascript code to its settings leading to stored Cross-Site Scripting that will only affect administrator users.
Affected Version(s)
Page Restriction WordPress (WP) – Protect WP Pages/Post 1.2.7