WordPress Plugin Vulnerabilities

Iframe < 4.5 - Authenticated Stored Cross Site Scripting (XSS)

Description

The iframe plugin before 4.5 does not sanitize a URL.

Proof of Concept

Affects Plugins

Fixed in 4.5

References

Classification

Type
XSS
CWE

Miscellaneous

Original Researcher
Guilherme Rubert
Submitter
Guilherme Rubert
Submitter website
Verified
No

Timeline

Publicly Published
2020-05-07 (about 5 years ago)
Added
2020-05-13 (about 5 years ago)
Last Updated
2020-05-14 (about 5 years ago)

Other