CVE-2022-2600

The Auto-hyperlink URLs WordPress plugin through 5.4.1 does not set rel="noopener noreferer" on generated links, which can lead to Tab Nabbing by giving the target site access to the source tab through the window.opener DOM object.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:auto-hyperlink_urls_project:auto-hyperlink_urls:*:*:*:*:*:wordpress:*:*

Information

Published : 2022-08-22 08:15

Updated : 2022-08-23 10:24


NVD link : CVE-2022-2600

Mitre link : CVE-2022-2600


JSON object : View

Advertisement

dedicated server usa

Products Affected

auto-hyperlink_urls_project

  • auto-hyperlink_urls