CVE-2021-24478
02.08.2021, 11:15
The Bookshelf WordPress plugin through 2.0.4 does not sanitise or escape its "Paypal email address" setting before outputting it in the page, leading to an authenticated Stored Cross-Site Scripting issue
Vendor | Product | Version |
---|---|---|
bookshelf_project | bookshelf | 𝑥 ≤ 2.0.4 |
𝑥
= Vulnerable software versions