Vulnerabilities > CVE-2022-29430 - Unspecified vulnerability in PNG to JPG Project PNG to JPG

047910
CVSS 6.1 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
LOW
Integrity impact
LOW
Availability impact
NONE
network
low complexity
png-to-jpg-project

Summary

Cross-Site Scripting (XSS) vulnerability in KubiQ's PNG to JPG plugin <= 4.0 at WordPress via Cross-Site Request Forgery (CSRF). Vulnerable parameter &jpg_quality.

Vulnerable Configurations

Part Description Count
Application
Png_To_Jpg_Project
1