Filtered by vendor Pubydoc Subscriptions
Filtered by product Pubydoc Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2023-4970 1 Pubydoc 1 Pubydoc 2024-11-21 4.8 Medium
The PubyDoc WordPress plugin through 2.0.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed