CVE-2024-4899
24.06.2024, 06:15
The SEOPress WordPress plugin before 7.8 does not sanitise and escape some of its Post settings, which could allow high privilege users such as contributor to perform Stored Cross-Site Scripting attacks.
Vendor | Product | Version |
---|---|---|
seopress | seopress | 𝑥 < 7.8 |
𝑥
= Vulnerable software versions