mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-13 14:14:44 +02:00
868 B
868 B
CVE-2021-25085
Description
The WOOF WordPress plugin before 1.2.6.3 does not sanitise and escape the woof_redraw_elements before outputing back in an admin page, leading to a Reflected Cross-Site Scripting
POC
Reference
- https://wpscan.com/vulnerability/b7dd81c6-6af1-4976-b928-421ca69bfa90
- https://wpscan.com/vulnerability/b7dd81c6-6af1-4976-b928-421ca69bfa90