The shortcodes-ultimate-pro WordPress plugin before 7.1.5 does not properly escape some of its shortcodes' settings, making it possible for attackers with a Contributor account to conduct Stored XSS attacks.
CVSS
No CVSS.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-07-13 06:15
Updated : 2024-07-15 13:00
NVD link : CVE-2024-4217
Mitre link : CVE-2024-4217
CVE.ORG link : CVE-2024-4217
JSON object : View
Products Affected
No product.
CWE
No CWE.
