RSS   Vulnerabilities for 'Security audit'   RSS

2022-02-28
 
CVE-2021-24901

CWE-79
 

 
The Security Audit WordPress plugin through 1.0.0 does not sanitise and escape the Data Id setting, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

 

 >>> Vendor: Securemoz 2 Products
Securemoz security audit
Security audit


Copyright 2024, cxsecurity.com

 

Back to Top