Description
The WPBakery plugin before 6.4.1 for WordPress allows XSS because it calls kses_remove_filters to disable the standard WordPress XSS protection mechanism for the Author and Contributor roles.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-21048 | The WPBakery plugin before 6.4.1 for WordPress allows XSS because it calls kses_remove_filters to disable the standard WordPress XSS protection mechanism for the Author and Contributor roles. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T16:40:59.962Z
Reserved: 2020-11-16T00:00:00.000Z
Link: CVE-2020-28650
No data.
Status : Modified
Published: 2020-11-16T04:15:12.667
Modified: 2024-11-21T05:23:06.520
Link: CVE-2020-28650
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD