CVE-2021-36823

CVE-2021-36823

Authenticated Stored Cross-Site Scripting (XSS) vulnerability in WordPress Absolutely Glamorous Custom Admin plugin (versions <= 6.8). Stored XSS possible via unsanitized input fields of the plugin settings, some of the payloads could make the frontend and the backend inaccessible.

Source: CVE-2021-36823

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다