CVE-2024-3966
14.06.2024, 06:15
The Pray For Me WordPress plugin through 1.0.4 does not sanitise and escape some parameters, which could unauthenticated visitors to perform Cross-Site Scripting attacks that trigger when an admin visits the Prayer Requests in the WP Admin
Vendor | Product | Version |
---|---|---|
projectcaruso | pray_for_me | 𝑥 ≤ 1.0.4 |
𝑥
= Vulnerable software versions