Vulnerabilities > CVE-2022-1512 - Unspecified vulnerability in Scrollrevealjs-Effects Project Scrollrevealjs-Effects

047910
CVSS 4.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
LOW
Integrity impact
LOW
Availability impact
NONE
network
low complexity
scrollrevealjs-effects-project

Summary

The ScrollReveal.js Effects WordPress plugin through 1.2 does not sanitise and escape its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

Vulnerable Configurations

Part Description Count
Application
Scrollrevealjs-Effects_Project
1