CVE-2019-10864
23.04.2019, 18:29
The WP Statistics plugin through 12.6.2 for WordPress has XSS, allowing a remote attacker to inject arbitrary web script or HTML via the Referer header of a GET request.
Vendor | Product | Version |
---|---|---|
veronalabs | wp_statistics | 𝑥 ≤ 12.6.2 |
𝑥
= Vulnerable software versions
References