mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-27 14:32:30 +02:00
791 B
791 B
CVE-2021-24470
Description
The Yada Wiki WordPress plugin before 3.4.1 did not sanitise, validate or escape the anchor attribute of its shortcode, leading to a Stored Cross-Site Scripting issue
POC
Reference
- https://wpscan.com/vulnerability/b01a85cc-0e45-4183-a916-19476354d5d4
- https://wpscan.com/vulnerability/b01a85cc-0e45-4183-a916-19476354d5d4
Github
No PoCs found on GitHub currently.