CVE-2024-2729
18.04.2024, 05:15
The Otter Blocks WordPress plugin before 2.6.6 does not properly escape its mainHeadings blocks' attribute before appending it to the final rendered block, allowing contributors to conduct Stored XSS attacks.
| Vendor | Product | Version |
|---|---|---|
| themeisle | otter_blocks | 𝑥 < 2.6.6 |
𝑥
= Vulnerable software versions