Vulnerabilities (CVE)

Filtered by vendor Deleteoldorders Project Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-0620 1 Deleteoldorders Project 1 Delete Old Orders 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The Delete Old Orders WordPress plugin through 0.2 does not sanitize and escape the date parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting.