CVE-2022-1673

CVE-2022-1673: WooCommerce Green Wallet Gateway < 1.0.2 - Reflected Cross Site Scripting in checkout page

Vendor Unknown
Product WooCommerce Green Wallet Gateway
Weakness CWE-79 · XSS
Published June 6, 2022
Last update August 3, 2024

CVSS base score

—

What the vulnerability does

01Description

The WooCommerce Green Wallet Gateway WordPress plugin before 1.0.2 does not escape the error_envision query parameter before outputting it to the page, leading to a Reflected Cross-Site Scripting vulnerability.

Key dates

02Disclosure timeline

June 6, 2022 CVE published
August 3, 2024 Record updated

Related vulnerabilities

04Related CVE