The Autoptimize WordPress plugin before 2.8.4 was missing proper escaping and sanitisation in some of its settings, allowing high privilege users to set XSS payloads in them, leading to stored Cross-Site Scripting issues
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: WPScan
Published: 2021-05-24T10:58:05
Updated: 2024-08-03T19:28:23.474Z
Reserved: 2021-01-14T00:00:00
Link: CVE-2021-24332
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-05-24T11:15:08.430
Modified: 2024-11-21T05:52:51.713
Link: CVE-2021-24332
Redhat
No data.