Vulnerabilities > CVE-2022-4306 - Unspecified vulnerability in Panda Pods Repeater Field Project Panda Pods Repeater Field
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
LOW Integrity impact
LOW Availability impact
NONE Summary
The Panda Pods Repeater Field WordPress plugin before 1.5.4 does not sanitize and escapes a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against a user having at least Contributor permission.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |