Advanced Database Cleaner < 3.1.1 - Reflected Cross-Site Scripting
CVE-2022-2173
6.1MEDIUM
What is CVE-2022-2173?
The Advanced Database Cleaner WordPress plugin before 3.1.1 does not escape numerous generated URLs before outputting them back in href attributes of admin dashboard pages, leading to Reflected Cross-Site Scripting
Affected Version(s)
Advanced Database Cleaner 3.1.1