CVE-2022-50797

S

tripe Green Downloads Wordpress Plugin 2.03 contains a persistent cross-site scripting vulnerability allowing remote attackers to inject malicious scripts in button label fields. Attackers can exploit input parameters to execute arbitrary scripts, potentially leading to session hijacking and application module manipulation.

Configurations

No configuration.

History

01 Feb 2026, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-01 13:15

Updated : 2026-02-03 16:44


NVD link : CVE-2022-50797

Mitre link : CVE-2022-50797

CVE.ORG link : CVE-2022-50797


JSON object : View

Products Affected

No product.

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')