The Storefront Footer Text WordPress... CVE-2021-24607

3.5 AV AC AU C I A
发布: 2021-11-08
修订: 2024-11-21

The Storefront Footer Text WordPress plugin through 1.0.1 does not sanitize and escape the "Footer Credit Text" added to pages, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered-html capability is disallowed.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息