CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.1. It affects WordPress, Java.
CVE
CVE-2017-5942
Severity
MEDIUM
CVSS
6.1
EPSS
0.96%
WordPress Java
Original NVD Description
An issue was discovered in the WP Mail plugin before 1.2 for WordPress. The replyto parameter when composing a mail allows for a reflected XSS. This would allow you to execute JavaScript in the context of the user receiving the mail.