CVE-2023-3524
EUVD-2023-4418107.08.2023, 15:15
The WPCode WordPress plugin before 2.0.13.1 does not escape generated URLs before outputting them in attributes, leading to Reflected Cross-Site ScriptingEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| wpcode | wpcode | 𝑥 ≤ 2.0.13.1 |
𝑥
= Vulnerable software versions