CVE-2021-24564

CVE-2021-24564

The WPFront Scroll Top WordPress plugin before 2.0.6.07225 does not sanitise or escape its Image ALT setting before outputting it attributes, leading to an Authenticated Stored Cross-Site Scripting issues even when the unfiltered_html capability is disallowed.

Source: CVE-2021-24564

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다