Filtered by vendor Obg
Subscriptions
Filtered by product Ark Wysiwyg Comment Editor
Subscriptions
Total
1 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2021-4227 | 1 Obg | 1 Ark Wysiwyg Comment Editor | 2024-08-03 | 5.3 Medium |
The ark-commenteditor WordPress plugin through 2.15.6 does not properly sanitise or encode the comments when in Source editor, allowing attackers to inject an iFrame in the page and thus load arbitrary content from any page to the comment section |
Page 1 of 1.