Update CVE-2020-12054.yaml

patch-1
Prince Chaddha 2021-07-15 17:25:22 +05:30 committed by GitHub
parent cb364b16c5
commit 89112a18d6
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 1 additions and 0 deletions

View File

@ -4,6 +4,7 @@ info:
name: Catch Breadcrumb < 1.5.7 - Unauthenticated Reflected XSS name: Catch Breadcrumb < 1.5.7 - Unauthenticated Reflected XSS
author: daffainfo author: daffainfo
severity: medium severity: medium
description: The Catch Breadcrumb plugin before 1.5.4 for WordPress allows Reflected XSS via the s parameter (a search query).
reference: https://wpscan.com/vulnerability/30a83491-2f59-4c41-98bd-a9e6e5a609d4 reference: https://wpscan.com/vulnerability/30a83491-2f59-4c41-98bd-a9e6e5a609d4
tags: cve,cve2020,wordpress,xss,wp-plugin tags: cve,cve2020,wordpress,xss,wp-plugin