CVE-2018-5214
04.01.2018, 18:29
The "Add Link to Facebook" plugin through 2.3 for WordPress has XSS via the al2fb_facebook_id parameter to wp-admin/profile.php.
Cross-site Scripting
Vendor | Product | Version |
---|---|---|
add_link_to_facebook_project | add_link_to_facebook | 𝑥 ≤ 2.3 |
𝑥
= Vulnerable software versions
References