ZeroHour

CVE-2020-15020

CVSS 3.1
5.4 medium
EPSS
<1%p51
Published
()
Modified
Description

An issue was discovered in the Elementor plugin through 2.9.13 for WordPress. An authenticated attacker can achieve stored XSS via the Name Your Template field.

Vendors
elementor
Products
website builder
Ecosystems
WordPress
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.