Fiche vulnérabilité
CVE-2022-3558 : faille élevée codection import and export users and… (CVSS 8.0)
Description
The Import and export users and customers WordPress plugin before 1.20.5 does not properly escape data when exporting it via CSV files.
En bref
- Sévérité
- Élevée (CVSS 8.0)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 7 nov. 2022
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- codection import and export users and customers