Vulnerability Details CVE-2022-2565
The Simple Payment Donations & Subscriptions WordPress plugin before 4.2.1 does not sanitise and escape user input given in its forms, which could allow unauthenticated attackers to perform Cross-Site Scripting attacks against admins
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.0%
CVSS Severity
CVSS v3 Score 7.2
Products affected by CVE-2022-2565
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.0.0
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.0.1
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.1.5
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.1.6
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.2.0
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.2.1
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.2.5
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.2.6
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.9.0
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.9.2
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.9.3
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.9.8
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:1.9.91
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:2.0.0
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:2.0.1
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:2.0.2
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:2.0.3
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:2.1.0
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:3.0.0
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:3.0.1
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:4.0.0
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:4.0.1
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:4.1.0
-
cpe:2.3:a:paymattic:simple_payment_donations_&_subscriptions:4.2.0