Lucene search

K
patchstackNgo Van Thien (Alliance project)PATCHSTACK:E88D3A51D22DD6C635CB7BE3E5453316
HistoryMay 26, 2022 - 12:00 a.m.

WordPress Private Messages For WordPress plugin <= 2.1.10 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability

2022-05-2600:00:00
Ngo Van Thien (Alliance project)
patchstack.com
11
wordpress private messages
xss
vulnerability
ngo van thien

EPSS

0.001

Percentile

22.7%

Authenticated Stored Cross-Site Scripting (XSS) vulnerability discovered by Ngo Van Thien (Patchstack Alliance) in WordPress Private Messages For WordPress plugin (versions <= 2.1.10).

Solution

Deactivate and delete. This plugin has been closed as of May 20, 2022 and is not available for download. This closure is temporary, pending a full review.

EPSS

0.001

Percentile

22.7%

Related for PATCHSTACK:E88D3A51D22DD6C635CB7BE3E5453316