Description
Cross-Site Scripting (XSS) vulnerability discovered in Yasr – Yet Another Stars Rating WordPress plugin (versions <= 2.9.9), vulnerable at parameter 'source'.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Update to 3.0.0 or higher version.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-28895 | Cross-Site Scripting (XSS) vulnerability discovered in Yasr – Yet Another Stars Rating WordPress plugin (versions <= 2.9.9), vulnerable at parameter 'source'. |
References
History
Thu, 20 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-04-28T16:07:38.259Z
Reserved: 2022-01-26T00:00:00.000Z
Link: CVE-2022-23980
Updated: 2024-08-03T03:59:23.272Z
Status : Modified
Published: 2022-02-04T23:15:15.950
Modified: 2024-11-21T06:49:35.400
Link: CVE-2022-23980
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD