Vulnerabilities > Ninjateam > WP Duplicate Page > Low

DATE CVE VULNERABILITY TITLE RISK
2022-07-11 CVE-2022-2093 Cross-site Scripting vulnerability in Ninjateam WP Duplicate Page 1.0/1.1/1.2
The WP Duplicate Page WordPress plugin before 1.3 does not sanitize and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed.
network
ninjateam CWE-79
3.5