WordPress Plugin Vulnerabilities

Broken Link Checker <= 1.10.8 - Unauthenticated Stored XSS

Description

Persistent Cross-Site Scripting (XSS) in wordpress-admin-panel enabled by not proper sanitised HTTP headers.

Affects Plugins

Fixed in 1.10.9

References

Classification

Type
XSS
CWE

Miscellaneous

Submitter
HSASec
Submitter website
Submitter twitter
Verified
No

Timeline

Publicly Published
2015-06-29 (about 10 years ago)
Added
2015-06-29 (about 10 years ago)
Last Updated
2020-09-22 (about 5 years ago)

Other