Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) discovered in tarteaucitron.js – Cookies legislation & GDPR WordPress plugin (versions <= 1.5.4), vulnerable parameters "tarteaucitronEmail" and "tarteaucitronPass".
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published: 2021-12-20T20:08:23.332537Z

Updated: 2024-09-16T18:49:40.416Z

Reserved: 2021-07-19T00:00:00

Link: CVE-2021-36887

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-12-20T21:15:08.210

Modified: 2022-01-03T19:49:41.323

Link: CVE-2021-36887

cve-icon Redhat

No data.