mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-31 05:59:31 +02:00
799 B
799 B
CVE-2021-25024
Description
The EventCalendar WordPress plugin before 1.1.51 does not escape some user input before outputting it back in attributes, leading to Reflected Cross-SIte Scripting issues
POC
Reference
- https://wpscan.com/vulnerability/08864b76-d898-4dfe-970d-d7cc1b1115a7
- https://wpscan.com/vulnerability/08864b76-d898-4dfe-970d-d7cc1b1115a7
Github
No PoCs found on GitHub currently.