5/3/2023 0 Comments Universal Box Setup 2.9.7![]() The vulnerability is due to insufficient sanitization of the "data-frmverify" tag for links in the web-based entry inspection page of affected systems. If the Link gets clicked, Javascript code can be executed. The HTML-injection may trick authenticated users to follow the link. Multiple Authenticated Persistent Cross-Site Scripting (XSS) vulnerabilities in WordPress WP Google Maps plugin (versions, and.This could allow an unauthenticated, remote attacker to exploit a HTML-injection byinjecting a malicous link. ![]() Cross-Site Request Forgery (CSRF) vulnerability in ShapedPlugin WP Tabs – Responsive Tabs Plugin for WordPress plugin mass update settings, manage subscriptions > add a new subscription, update subscription, delete Subscription.Ĭross-Site Request Forgery (CSRF) leading to Stored Cross-Site Scripting (XSS) in Mufeng's Hermit 音 乐 播 放 器 plugin &attributes, Name > &attributes, &icons, &names, &description, &link, &title.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |