Vulnerability CVE-2021-42233


Published: 2022-05-23

Description:
The Simple Blog plugin in Wondercms 3.4.1 is vulnerable to stored cross-site scripting (XSS) vulnerability. When any user opens a particular blog hosted on an attackers' site, XSS may occur.

 References:
https://hackerone.com/reports/961046
https://hackerone.com/reports/647130
https://hackerone.com/reports/485748

Copyright 2026, cxsecurity.com

 

Back to Top