The WP Logs Book WordPress plugin through 1.0.1 does not sanitise and escape some of its log data before outputting them back in an admin dashboard, leading to an Unauthenticated Stored Cross-Site Scripting
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2024-06-21T06:00:04.995Z

Updated: 2024-08-01T20:40:47.341Z

Reserved: 2024-05-03T19:34:58.394Z

Link: CVE-2024-4477

cve-icon Vulnrichment

Updated: 2024-08-01T20:40:47.341Z

cve-icon NVD

Status : Modified

Published: 2024-06-21T06:15:12.347

Modified: 2024-07-12T16:12:03.717

Link: CVE-2024-4477

cve-icon Redhat

No data.