CVE-2021-24211
05.04.2021, 19:15
The WordPress Related Posts plugin through 3.6.4 contains an authenticated (admin+) stored XSS vulnerability in the title field on the settings page. By exploiting that an attacker will be able to execute JavaScript code in the user's browser.
Vendor | Product | Version |
---|---|---|
wphive | wordpress_related_posts | 𝑥 ≤ 3.6.4 |
𝑥
= Vulnerable software versions