mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-26 13:37:50 +02:00
847 B
847 B
CVE-2021-24986
Description
The Post Grid WordPress plugin before 2.1.16 does not escape the keyword parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting in pages containing a Post Grid with a search form
POC
Reference
- https://wpscan.com/vulnerability/51e57f25-b8b2-44ca-9162-d7328eac64eb
- https://wpscan.com/vulnerability/51e57f25-b8b2-44ca-9162-d7328eac64eb
Github
No PoCs found on GitHub currently.