Lucene search

K
wpvulndbWpvulndbWPVDB-ID:AEF8F6C3-7FC6-46E1-BBD9-895A9AAEE372
HistoryMar 27, 2023 - 12:00 a.m.

Continuous Image Carousel With Lightbox < 1.0.16 - Reflected XSS

2023-03-2700:00:00
wpscan.com
9
plugin
xss
vulnerability
admin
users
parameters

0.001 Low

EPSS

Percentile

19.9%

The plugin does not sanitise and escape some parameters before outputting them back, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

0.001 Low

EPSS

Percentile

19.9%

Related for WPVDB-ID:AEF8F6C3-7FC6-46E1-BBD9-895A9AAEE372