WordPress · Wp Best Quiz · CVE-2022-3739
**Name of the Vulnerable Software and Affected Versions**
WP Best Quiz WordPress plugin versions 1.0 and earlier
**Description**
The issue allows users with a role as low as Author to perform Cross-Site Scripting attacks due to the plugin not sanitizing and escaping some parameters.
**Recommendations**
For WP Best Quiz WordPress plugin versions 1.0 and earlier, update to a version that addresses the sanitization and escaping of parameters to prevent Cross-Site Scripting attacks.