CVE-2021-25034
28.02.2022, 09:15
The WP User WordPress plugin before 7.0 does not sanitise and escape some parameters in pages where the [wp_user] shortcode is used, leading to Reflected Cross-Site Scripting issues
Vendor | Product | Version |
---|---|---|
wp_user_project | wp_user | 𝑥 < 7.0 |
𝑥
= Vulnerable software versions