Vulnerability CVE-2022-2983


Published: 2022-11-28

Description:
The Salat Times WordPress plugin before 3.2.2 does not sanitize and escapes its settings, allowing high-privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

Type:

CWE-79

(Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting'))

 References:
https://wpscan.com/vulnerability/e2af8c7f-9bd4-4902-8df8-72ffb414fdbf

Copyright 2026, cxsecurity.com

 

Back to Top