CVE-2021-24975

Publication date

2022-02-01 12:21:33

Family

WPScan

State

PUBLISHED

Description

The NextScripts: Social Networks Auto-Poster WordPress plugin before 4.3.24 does not sanitise and escape logged requests before outputting them in the related admin dashboard, leading to an Unauthenticated Stored Cross-Site Scripting issue