WordPress Plugin Vulnerabilities
Vanguard <= 2.1 - Multiple Cross-Site Scripting (XSS)
Description
The plugin does not sanitise, validate or escape some of its parameters before outputting the back in various place, leading to either Stored or Reflected Cross-Site Scripting issues
Proof of Concept
Affects Plugins
References
Classification
Type
XSS
OWASP top 10
CWE
CVSS
Miscellaneous
Original Researcher
thelastvvv
Verified
Yes
WPVDB ID
Timeline
Publicly Published
2020-04-06 (about 6 years ago)
Added
2021-06-29 (about 4 years ago)
Last Updated
2022-01-17 (about 4 years ago)