Known CVE
WordPress Newspaper < 12 - Cross-Site Scripting
WordPress Newspaper theme before 12 is susceptible to cross-site scripting. The does not sanitize a parameter before outputting it back in an HTML attribute via an AJAX action. An attacker can potentially execute malware, obtain sensitive information, modify data, and/or execute unauthorized operations without entering necessary credentials.
CVE-2022-2627
Medium2022CVSS 6.1CWE-79
cve2022 · xss · wordpress · wp · wp-theme · newspaper · wpscan · tagdiv
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website