CVE-2022-27852: WordPress KB Support plugin <= 1.5.5 - Multiple Unauth. Stored Cross-Site Scripting (XSS) vulnerabilities
Multiple Unauthenticated Stored Cross-Site Scripting (XSS) vulnerabilities in KB Support (WordPress plugin) <= 1.5.5 versions.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-27852?
CVE-2022-27852 refers to multiple unauthenticated stored Cross-Site Scripting (XSS) vulnerabilities in KB Support (WordPress plugin) <= 1.5.5 versions.
What is the severity of CVE-2022-27852?
The severity of CVE-2022-27852 is medium with a CVSS score of 6.1.
Which software versions are affected by CVE-2022-27852?
KB Support (WordPress plugin) versions up to and including 1.5.5 are affected by CVE-2022-27852.
What is Cross-Site Scripting (XSS)?
Cross-Site Scripting (XSS) is a type of vulnerability that allows attackers to inject malicious scripts into web pages viewed by other users.
Where can I find more information about CVE-2022-27852?
You can find more information about CVE-2022-27852 at the following link: [CVE Details](https://patchstack.com/database/vulnerability/kb-support/wordpress-kb-support-wordpress-help-desk-plugin-1-5-5-multiple-unauthenticated-stored-cross-site-scripting-xss-vulnerabilities?_s_id=cve)