Vulnerabilities > AYS PRO > Poll Maker > Low
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-05-30 | CVE-2022-1456 | Cross-site Scripting vulnerability in Ays-Pro Poll Maker The Poll Maker WordPress plugin before 4.0.2 does not sanitise and escape some settings, which could allow high privilege users such as admin to perform Store Cross-Site Scripting attack even when unfiltered_html is disallowed | 3.5 |