Search Results (22 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-0531 1 Wpvivid 1 Migration\, Backup\, Staging 2024-11-21 6.1 Medium
The Migration, Backup, Staging WordPress plugin before 0.9.70 does not sanitise and escape the sub_page parameter before outputting it back in the page, leading to a reflected Cross-Site Scripting
CVE-2021-24994 1 Wpvivid 1 Migration\, Backup\, Staging 2024-11-21 6.1 Medium
The Migration, Backup, Staging WordPress plugin before 0.9.69 does not have authorisation when adding remote storages, and does not sanitise as well as escape a parameter from such unauthenticated requests before outputting it in admin page, leading to a Stored Cross-Site Scripting issue