CVE-2021-36851
04.04.2022, 20:15
Authenticated (editor or higher user role) Cross-Site Scripting (XSS) vulnerability in Web-Settler Testimonial Slider Free Testimonials Slider Plugin (WordPress plugin) via parameters mpsp_posts_bg_color, mpsp_posts_description_color, mpsp_slide_nav_button_color.
Vendor | Product | Version |
---|---|---|
web-settler | testimonial_slider | 𝑥 ≤ 3.5.8.3 |
𝑥
= Vulnerable software versions
References