mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-13 10:04:45 +02:00
829 B
829 B
CVE-2021-24432
Description
The Advanced AJAX Product Filters WordPress plugin does not sanitise the 'term_id' POST parameter before outputting it in the page, leading to reflected Cross-Site Scripting issue.
POC
Reference
- https://wpscan.com/vulnerability/b92ec5f7-d6a8-476f-a01e-21001a558914/
- https://wpscan.com/vulnerability/b92ec5f7-d6a8-476f-a01e-21001a558914/
Github
No PoCs found on GitHub currently.