← back
CVE-2021-24316

Mediumish <= 1.0.47 - Unauthenticated Reflected Cross-Site Scripting (XSS)

EPSS 6.4%CWE-79
The search feature of the Mediumish WordPress theme through 1.0.47 does not properly sanitise it's 's' GET parameter before output it back the page, leading to the Cross-SIte Scripting issue.
Affected products
WowThemes · Mediumish

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →