目标: 1000 元 · 已筹: 1000 元
The plugin does not escape parameters before outputting them back in attributes, leading to Reflected Cross-Site Scripting
id: CVE-2022-3062 info: name: Simple File List < 4.4.12 - Cross Site Scripting author: r3Y3r53 ...