CVE-2020-35944

Publication date

2021-01-01 03:28:58

Family

mitre

State

PUBLISHED

Description

An issue was discovered in the PageLayer plugin before 1.1.2 for WordPress. The pagelayer_settings_page function is vulnerable to CSRF, which can lead to XSS.