Loading
The WooCommerce - Product Importer WordPress plugin through 1.5.2 does not sanitise and escape the imported data before outputting it back in the page, leading to a Reflected Cross-Site Scripting
Cite this page
CVE-2022-1546. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2022-1546
Use CWE-79, Visser vendor hub and Woocommerce - Product Importer product page to widen CVE-2022-1546 into its surrounding weakness, vendor, and product context.