CVE-2021-24156
05.04.2021, 19:15
Stored Cross-Site Scripting vulnerabilities in Testimonial Rotator 3.0.3 allow low privileged users (Contributor) to inject arbitrary JavaScript code or HTML without approval. This could lead to privilege escalation
| Vendor | Product | Version |
|---|---|---|
| testimonial_rotator_project | testimonial_rotator | 3.0.3 |
𝑥
= Vulnerable software versions