CVE Vulnerabilities

CVE-2022-2094

Published: Feb 08, 2023 | Modified: Mar 25, 2025
CVSS 3.x
6.1
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The Yellow Yard Searchbar WordPress plugin before 2.8.2 does not escape some URL parameters before outputting them back to the user, leading to Reflected Cross-Site Scripting

Affected Software

NameVendorStart VersionEnd Version
Yellow_yard_searchbarYellowyard*2.8.2 (excluding)

References