WordPress Plugin Vulnerabilities
Marketo Forms and Tracking <= 1.0.2 - CSRF to XSS
Description
Lack of CSRF checks and sanitisation on the plugin's settings page could allow XSS attacks via CSRF.
Proof of Concept
Affects Plugins
References
Miscellaneous
Original Researcher
Zeroauth
Verified
No
WPVDB ID
Timeline
Publicly Published
2020-01-17 (about 6 years ago)
Added
2020-01-18 (about 6 years ago)
Last Updated
2020-09-22 (about 5 years ago)