Security Advisory
CVE-2024-1849
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The WP Customer Reviews WordPress plugin before 3.7.1 does not validate a parameter allowing contributor and above users to redirect a page to a malicious URL