← back
CVE-2021-24302CWE-79

Hana Flv Player <= 3.1.3 - Authenticated Stored Cross-Site Scripting (XSS)

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 0.6%
exploitation probability
0.6%top 52% of all CVEs
observed exploitation
nono source reports it
The Hana Flv Player WordPress plugin through 3.1.3 is vulnerable to an Authenticated Stored Cross-Site Scripting (XSS) vulnerability within the 'Default Skin' field.