Pods < 2.7.27 - Authenticated Stored Cross-Site Scripting (XSS)
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 0.8%
exploitation probability
0.8%top 45% of all CVEs
observed exploitation
nono source reports it
The Pods – Custom Content Types and Fields WordPress plugin before 2.7.27 was vulnerable to an Authenticated Stored Cross-Site Scripting (XSS) security vulnerability within the 'Singular Label' field parameter.
Affected products
Pods Framework Team · Pods – Custom Content Types and Fields