The plugin does not sanitise and escape the frameid parameter before outputting it back in a JS context, leading to a Reflected Cross-Site Scripting
Rafie Muhammad (Yeraisci)
Yes
2022-06-02 (about 8 months ago)
2022-06-02 (about 8 months ago)
2022-06-07 (about 7 months ago)