Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-103100
HistoryNov 04, 2021 - 12:00 a.m.

WordPress Flat Preloader plugin cross-site scripting vulnerability

2021-11-0400:00:00
China National Vulnerability Database
www.cnvd.org.cn
6

0.001 Low

EPSS

Percentile

24.8%

WordPress is a set of blogging platforms developed by the WordPress Foundation using the PHP language. The platform supports setting up personal blog sites on PHP and MySQL servers. WordPress Flat Preloader Plugin in versions prior to 1.5.5 has a cross-site scripting vulnerability that stems from a lack of data validation filtering of user-supplied data and output. An attacker could exploit this vulnerability to execute JavaScript code on the client side.

CPENameOperatorVersion
wordpress flat preloader pluginlt1.5.5

0.001 Low

EPSS

Percentile

24.8%