Security Advisory

CVE-2021-36873

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-09-23 15:07:44
Last updated 2026-04-28 16:07:35
Assigner Patchstack
State PUBLISHED

Description

Authenticated Persistent Cross-Site Scripting (XSS) vulnerability in WordPress iQ Block Country plugin (versions <= 1.2.11). Vulnerable parameter: &blockcountry_blockmessage.