Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) discovered in tarteaucitron.js – Cookies legislation & GDPR WordPress plugin (versions <= 1.5.4), vulnerable parameters "tarteaucitronEmail" and "tarteaucitronPass".
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Patchstack
Published: 2021-12-20T20:08:23.332537Z
Updated: 2024-09-16T18:49:40.416Z
Reserved: 2021-07-19T00:00:00
Link: CVE-2021-36887
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-12-20T21:15:08.210
Modified: 2022-01-03T19:49:41.323
Link: CVE-2021-36887
Redhat
No data.