CVE-2021-24485
25.10.2021, 14:15
The Special Text Boxes WordPress plugin before 5.9.110 does not sanitise or escape some of its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed.
Vendor | Product | Version |
---|---|---|
wp-special-textboxes_project | wp-special-textboxes | 𝑥 < 5.9.110 |
𝑥
= Vulnerable software versions