mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-01 11:01:35 +02:00
774 B
774 B
CVE-2021-24283
Description
The tab GET parameter of the settings page is not sanitised or escaped when being output back in an HTML attribute, leading to a reflected XSS issue.
POC
Reference
- https://wpscan.com/vulnerability/6ccd9990-e15f-4800-b499-f7c74b480051
- https://wpscan.com/vulnerability/6ccd9990-e15f-4800-b499-f7c74b480051
Github
No PoCs found on GitHub currently.