← Back

Domain Replace

domain_replace

Vendor: Duogeek • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Duogeek
1Domain Replace
Jun 17, 2026
May 23, 2022
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
The Domain Replace WordPress plugin through 1.3.8 does not sanitise and escape a parameter before outputting it back in an attribute in an admin page, leading to a Reflected Cross-Site Scripting