Skip to content

Known CVE

WordPress Page Builder KingComposer <=2.9.6 - Open Redirect

WordPress Page Builder KingComposer 2.9.6 and prior does not validate the id parameter before redirecting the user to it via the kc_get_thumbn AJAX action (which is available to both unauthenticated and authenticated users).

CVE-2022-0165

Medium2022CVSS 6.1CWE-601

cve2022 · wp-plugin · redirect · wordpress · wp · wpscan · king-theme · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website