CVE-2021-24325

Publication date

2021-05-17 16:48:54

Family

WPScan

State

PUBLISHED

Description

The tab parameter of the settings page of the 404 SEO Redirection WordPress plugin through 1.3 is vulnerable to a reflected Cross-Site Scripting (XSS) issue as user input is not properly sanitised or escaped before being output in an attribute.