Lucene search

K
patchstackpatchstack.comPATCHSTACK:46EEBDD965B7634412895D53EAE336C9
HistoryApr 13, 2016 - 12:00 a.m.

WordPress Pondol Form to Mail Plugin <= 1.1 - Cross Site Scripting (XSS)

2016-04-1300:00:00
patchstack.com
12

EPSS

0.001

Percentile

46.3%

Because of this vulnerability, the variable itemid appears to send unsanitized data back to the users browser. Vulnerable file is pondol-formmail/pages/admin-mail-info.php.

Solution

Update the plugin.

EPSS

0.001

Percentile

46.3%

Related for PATCHSTACK:46EEBDD965B7634412895D53EAE336C9