The crayon-syntax-highlighter plugin before 2.8.4 for WordPress has multiple XSS issues via AJAX requests.
References
Link | Resource |
---|---|
https://github.com/aramk/crayon-syntax-highlighter/commit/7fdb2e6b4c65178b4ed01ff08a8a38afe5a5151e | Product |
https://github.com/aramk/crayon-syntax-highlighter/issues/347 | Issue Tracking Patch |
https://wordpress.org/plugins/crayon-syntax-highlighter/#developers | Release Notes |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2019-08-20 15:15
Updated : 2023-12-22 16:37
NVD link : CVE-2016-10893
Mitre link : CVE-2016-10893
CVE.ORG link : CVE-2016-10893
JSON object : View
Products Affected
crayon_syntax_highlighter_project
- crayon_syntax_highlighter
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')