Security Advisory

CVE-2021-36872

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-09-23 15:00:55
Last updated 2026-04-28 16:07:35
Assigner Patchstack
State PUBLISHED

Description

Authenticated Persistent Cross-Site Scripting (XSS) vulnerability in WordPress Popular Posts plugin (versions <= 5.3.3). Vulnerable at &widget-wpp[2][post_type].