Files
CVEs-PoC/2018/CVE-2018-8729.md
T
2025-09-29 21:09:30 +02:00

727 B

CVE-2018-8729

Description

Multiple cross-site scripting (XSS) vulnerabilities in the Activity Log plugin before 2.4.1 for WordPress allow remote attackers to inject arbitrary JavaScript or HTML via a title that is not escaped.

POC

Reference

Github