Security Advisory

CVE-2021-24975

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-02-01 12:21:33
Last updated 2024-08-03 19:49:14
Assigner WPScan
State PUBLISHED

Description

The NextScripts: Social Networks Auto-Poster WordPress plugin before 4.3.24 does not sanitise and escape logged requests before outputting them in the related admin dashboard, leading to an Unauthenticated Stored Cross-Site Scripting issue