Israpil Textmetrics
cpe:2.3:a:textmetrics:textmetrics:*:*:*:*:wordpress:*:*
- <= 3.6.3
A cross-site scripting vulnerability has been identified in the WordPress Textmetrics plugin, specifically in versions through 3.6.3. This vulnerability allows for improper neutralization of script-related HTML tags, leading to code injection. Malicious actors could exploit this to inject arbitrary content, potentially including phishing pages, into the website's posts and pages.
Exploitation of this vulnerability could result in content injection, allowing attackers to insert malicious content into the affected website's pages or posts.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.