CVE-2021-24468
02.08.2021, 11:15
The Leaflet Map WordPress plugin before 3.0.0 does not escape some shortcode attributes before they are used in JavaScript code or HTML, which could allow users with a role as low as Contributors to exploit stored XSS issues
Vendor | Product | Version |
---|---|---|
bozdoz | leaflet_map | 𝑥 < 3.0.0 |
𝑥
= Vulnerable software versions