ZeroHour

CVE-2021-24571

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p48
Published
()
Modified
Description

The HD Quiz WordPress plugin before 1.8.4 does not escape some of its Answers before outputting them in attribute when generating the Quiz, which could lead to Stored Cross-Site Scripting issues

Vendors
harmonicdesign
Products
hd quiz
Ecosystems
WordPress
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.