← volver
CVE-2021-46781

Coming Soon by Supsystic < 1.7.6 - Reflected Cross-Site Scripting

EPSS 0.8%CWE-79
The Coming Soon by Supsystic WordPress plugin before 1.7.6 does not sanitise and escape the tab parameter before outputting it back in an attribute in the admin dashboard, leading to a Reflected Cross-Site Scripting

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →