Incoming Links < 0.9.10b - Stored Cross-Site Scripting
highThe incoming-links plugin before 0.9.10b for WordPress has referrers.php XSS via the Referer HTTP header.
- CVSS:
- 7.2
- Affected:
- up to 0.9.10b
- Fixed in:
- 0.9.10b
- Disclosed:
- Feb 1, 2015
plugin
1 known security issue reported for the Incoming Links WordPress plugin. Most recent disclosed Feb 1, 2015.
Running Incoming Links on your site? Check whether your installed version is affected.
Scan your site freeThe incoming-links plugin before 0.9.10b for WordPress has referrers.php XSS via the Referer HTTP header.
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free