Multiple cross-site scripting (XSS) vulnerabilities in the Activity Log plugin before 2.4.1 for WordPress allow remote attackers to inject arbitrary JavaScript or HTML via a title that is not escaped.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 14 Nov 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-11-14T20:48:12.262Z
Reserved: 2018-03-15T00:00:00
Link: CVE-2018-8729
Updated: 2024-08-05T07:02:26.030Z
Status : Modified
Published: 2018-03-15T17:29:00.210
Modified: 2024-11-21T04:14:13.517
Link: CVE-2018-8729
No data.
OpenCVE Enrichment
No data.
Weaknesses