CVE-2021-24481

CVE-2021-24481

The Any Hostname WordPress plugin through 1.0.6 does not sanitise or escape its "Allowed hosts" setting, leading to an authenticated stored XSS issue as high privilege users are able to set XSS payloads in it

Source: CVE-2021-24481

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다