CVE-2021-24156
05.04.2021, 19:15
Stored Cross-Site Scripting vulnerabilities in Testimonial Rotator 3.0.3 allow low privileged users (Contributor) to inject arbitrary JavaScript code or HTML without approval. This could lead to privilege escalation
Vendor | Product | Version |
---|---|---|
testimonial_rotator_project | testimonial_rotator | 3.0.3 |
𝑥
= Vulnerable software versions