CVE-2022-34853: Wpwax Team

Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.

Multiple Authenticated (contributor or higher user role) Persistent Cross-Site Scripting (XSS) vulnerabilities in wpWax Team plugin <= 1.2.6 at WordPress.

Affected products

  • Wpwax Team: up to and including 1.2.6

Published 2022-07-22. Last modified 2026-06-17.