cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-13822,https://securityvulnerability.io/vulnerability/CVE-2024-13822,Reflected Cross-Site Scripting in Photo Contest Plugin for WordPress,"The Photo Contest | Competition | Video Contest plugin for WordPress, affected up to version 2.8.1, fails to properly sanitize and escape parameters before rendering them in the web page. This oversight can lead to a Reflected Cross-Site Scripting (XSS) vulnerability, potentially allowing attackers to execute scripts in the context of high privilege users, including administrators. As a result, unauthorized actions could be performed, and sensitive information might be exposed.",WordPress,Photo Contest | Competition | Video Contest,6.1,MEDIUM,0.01,false,,false,false,true,2025-02-24T06:00:04.000Z,true,false,false,,2025-02-24T06:00:04.117Z,0