‘WordPress Import CSV Files plugin’ (versions <= 1.0) Reflected cross-site scripting (XSS) vulnerability

Details

Reflected cross-site scripting (XSS) vulnerability discovered in the WordPress Import CSV Files plugin (version <= 1.0).

solution

Deactivate and remove. This plugin is closed as of June 16, 2022 and cannot be downloaded.

Sources.

Import CSV Files

脆弱性情報を受け取る