mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-05 10:48:01 +02:00
916 B
916 B
CVE-2021-24590
Description
The Cookie Notice & Consent Banner for GDPR & CCPA Compliance WordPress plugin before 1.7.2 does not properly sanitize inputs to prevent injection of arbitrary HTML within the plugin's design customization options.
POC
Reference
- https://wpscan.com/vulnerability/d6846774-1958-4c8d-bb64-af0d8c46e6e7
- https://wpscan.com/vulnerability/d6846774-1958-4c8d-bb64-af0d8c46e6e7