CVE-2021-24283
14.05.2021, 12:15
The tab GET parameter of the settings page is not sanitised or escaped when being output back in an HTML attribute, leading to a reflected XSS issue.
Vendor | Product | Version |
---|---|---|
pickplugins | accordion | 𝑥 < 2.2.30 |
𝑥
= Vulnerable software versions