Vulnerabilities (CVE)

Filtered by vendor Foxy-shop Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-1220 1 Foxy-shop 1 Foxyshop 2024-02-28 4.3 MEDIUM 6.1 MEDIUM
The FoxyShop WordPress plugin before 4.8.2 does not sanitise and escape a parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting