WordPress Plugin Vulnerabilities

Simple Mail Address Encoder < 1.7 - Reflected Authenticated XSS

Description

Reflected XSS in the base64 encoded fwurl parameter when the plugin has been used for 30 days and shows a donation notice

Proof of Concept

Affects Plugins

References

Classification

Type
XSS
CWE

Miscellaneous

Timeline

Publicly Published
2019-07-03 (about 6 years ago)
Added
2019-07-03 (about 6 years ago)
Last Updated
2020-09-22 (about 5 years ago)

Other