ZeroHour

CVE-2021-24290

CVSS 3.1
6.1 medium
EPSS
<1%p55
Published
()
Modified
Description

There are several endpoints in the Store Locator Plus for WordPress plugin through 5.5.15 that could allow unauthenticated attackers the ability to inject malicious JavaScript into pages.

Vendors
de-baat
Products
store locator plus
Ecosystems
WordPress
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.