CVE-2021-36843
26.11.2021, 17:15
Authenticated Stored Cross-Site Scripting (XSS) vulnerability discovered in WordPress Floating Social Media Icon plugin (versions <= 4.3.5) Social Media Configuration form. Requires high role user like admin.
Vendor | Product | Version |
---|---|---|
acurax | floating_social_media_icon | 𝑥 ≤ 4.3.5 |
𝑥
= Vulnerable software versions
References