CVE-2021-24577
PoC —CVSS 3.1
5.4 medium
EPSS
<1%p48
Published
()
Modified
Description
The Coming soon and Maintenance mode WordPress plugin before 3.5.3 does not properly sanitize inputs submitted by authenticated users when setting adding or modifying coming soon or maintenance mode pages, leading to stored XSS.
- Vendors
- wpdevart
- Products
- coming soon and maintenance mode
- Ecosystems
- WordPress
- Weakness
- CWE-79
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
In the news0 stories
No ingested article mentions this CVE yet.