ZeroHour

CVE-2021-25058

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p47
Published
()
Modified
Description

The Buffer Button WordPress plugin through 1.0 was vulnerable to Authenticated Stored Cross Site Scripting (XSS) within the Twitter username to mention text field.

Vendors
the buffer button project
Products
the buffer button
Ecosystems
WordPress
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.