← voltar
CVE-2021-24418

Smooth Scroll Page Up/Down Buttons <= 1.4 - Authenticated Stored XSS via psb_positioning

EPSS 0.6%CWE-79
The Smooth Scroll Page Up/Down Buttons WordPress plugin through 1.4 does not properly sanitise and validate its psb_positioning settings, allowing high privilege users such as admin to set an XSS payload in it, which will be executed in all pages of the blog

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →