CVE-2021-24478
EUVD-2021-1139002.08.2021, 11:15
The Bookshelf WordPress plugin through 2.0.4 does not sanitise or escape its "Paypal email address" setting before outputting it in the page, leading to an authenticated Stored Cross-Site Scripting issue
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| bookshelf_project | bookshelf | 𝑥 ≤ 2.0.4 |
𝑥
= Vulnerable software versions