AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-1528

MEDIUM · CVSS 6.1 EPSS 0.77%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-05-30 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-1528
Severity
MEDIUM
CVSS
6.1
EPSS
0.77%
WordPress Java

Original NVD Description

The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.5.9 does not escape the current URL before putting it back in a JavaScript context, leading to a Reflected Cross-Site Scripting