CVE

CVE-2021-24262

CVE-2021-24262

The “WooLentor – WooCommerce Elementor Addons + Builder� WordPress Plugin before 1.8.6 has a widget that is vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.

Source: CVE-2021-24262

Exit mobile version