CVE Database /
CVE-2015-10098
CVE · Medium
CVE-2015-10098 — Broken Link Checker [broken-link-checker] < 1.10.6
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2015-10098
|
Broken Link Checker [broken-link-checker] < 1.10.6 |
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
Medium
6.1
|
< 1.10.6
|
1.10.6 |
2015-04-20 |
—
|
CVE-2015-10098
The Broken Link Checker plugin for WordPress through version 1.10.5 contains a cross-site scripting vulnerability in the print_module_list, show_warnings_section_notice, status_text, and ui_get_action_links functions. An attacker can exploit this flaw remotely by manipulating input to inject malicious scripts. The vulnerability is resolved in version 1.10.6 and users should upgrade immediately.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings