Beveiligingsadvies

CVE-2021-24751

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-11-29 08:25:33
Laatst bijgewerkt 2024-08-03 19:42:16
Toegewezen door WPScan
CVSS-score geen score
Status PUBLISHED

Beschrijving

The GenerateBlocks WordPress plugin before 1.4.0 does not validate the generateblocks/container block's tagName attribute, which could allow users with a role as low as contributor to perform Cross-Site Scripting attacks.