CVE-2021-24885
25.10.2021, 14:15
The YOP Poll WordPress plugin before 6.1.2 does not escape the perpage parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting
Vendor | Product | Version |
---|---|---|
yop-poll | yop-poll | 𝑥 < 6.1.2 |
𝑥
= Vulnerable software versions