CVE-2021-24331
01.06.2021, 14:15
The Smooth Scroll Page Up/Down Buttons WordPress plugin before 1.4 did not properly sanitise and validate its settings, such as psb_distance, psb_buttonsize, psb_speed, only validating them client side. This could allow high privilege users (such as admin) to set XSS payloads in them
Vendor | Product | Version |
---|---|---|
smooth_scroll_page_up\/down_buttons_project | smooth_scroll_page_up\/down_buttons | 𝑥 < 1.4 |
𝑥
= Vulnerable software versions
References