WordPress WOOCS < 188.8.131.52 - Cross-Site Scripting CVE-2022-0234 Scanner
Remote attacker can perform a reflected cross site scripting attack (XSS) by injecting malicious payload.
Can be used by
Scan only one
WordPress WOOCS < 184.108.40.206 - Cross-Site Scripting CVE-2022-0234 Scanner Detail
The WOOCS WordPress plugin before 220.127.116.11 does not sanitise and escape the woocs_in_order_currency parameter of the woocs_get_products_price_html AJAX action (available to both unauthenticated and authenticated users) before outputting it back in the response, leading to a Reflected Cross-Site Scripting