Vulnerabilities > Books Papers Project

DATE CVE VULNERABILITY TITLE RISK
2022-04-25 CVE-2022-1156 Cross-site Scripting vulnerability in Books & Papers Project Books & Papers
The Books & Papers WordPress plugin through 0.20210223 does not escape its Custom DB prefix settings, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed
network
low complexity
books-papers-project CWE-79
4.8