Vulnerabilities (CVE)

Filtered by vendor Fattura24 Subscribe
Filtered by product Fattura24
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-5211 1 Fattura24 1 Fattura24 2024-02-28 N/A 6.1 MEDIUM
The Fattura24 WordPress plugin before 6.2.8 does not sanitize or escape the 'id' parameter before outputting it back in the page, leading to a reflected Cross-Site Scripting vulnerability.