Vulnerability Database
API
Submit a vulnerability
Menu
API
Submit a vulnerability
Virtual patches available
See all vulnerabilities
WordPress Team Members plugin <= 5.1.0 - Stored Cross-Site Scripting (XSS) vulnerability
team-members
Software
Team Members
Vulnerable Versions
<= 5.1.0
Fixed in version
5.1.1
CVE
CVE-2022-1568
References
CVE-2022-1568
Vulnerability details
Plugin changelog
Credits
lucy
Classification
Cross Site Scripting (XSS)
OWASP Top 10
A7: Cross-Site Scripting (XSS)
Disclosure Date
2022-05-12
CVSS 3.0 score
3.4
Low
Requires high role user authentication like admin.
Plugin does not exist, is not supported or discontinued.
Are your websites subject to this vulnerability?
Patch now
View vulnerabilities for this software
Details
Stored Cross-Site Scripting (XSS) vulnerability was discovered by lucy in the WordPress Team Members plugin (versions <= 5.1.0).
Solution
Update the WordPress Team Members plugin to the latest available version (at least 5.1.1).
Found a vulnerability that puts your sites at risk?
Patches available at Patchstack
Found a vulnerability? Help us secure the web and join our community of ethical hackers.
Report a Vulnerability
Are you the developer of this software? Hire our researchers for a thorough security audit.
Learn more
Solutions
Pricing
Articles
Resources
Login
Try Free
Menu
Solutions
Pricing
Articles
Resources
Login
Try Free