Team Members < 5.1.1 - Admin+ Stored Cross-Site Scripting
CVE-2022-1568
4.8MEDIUM
What is CVE-2022-1568?
The Team Members WordPress plugin before 5.1.1 does not escape some of its Team settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed
Affected Version(s)
Team Members 5.1.1