Vulnerabilities > CVE-2022-4306 - Unspecified vulnerability in Panda Pods Repeater Field Project Panda Pods Repeater Field

047910
CVSS 5.4 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
LOW
Integrity impact
LOW
Availability impact
NONE
network
low complexity
panda-pods-repeater-field-project

Summary

The Panda Pods Repeater Field WordPress plugin before 1.5.4 does not sanitize and escapes a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against a user having at least Contributor permission.

Vulnerable Configurations

Part Description Count
Application
Panda_Pods_Repeater_Field_Project
1