mirror of
https://github.com/0xMarcio/cve.git
synced 2025-12-30 04:49:42 +00:00
710 B
710 B
CVE-2018-5654
Description
An issue was discovered in the weblizar-pinterest-feeds plugin 1.1.1 for WordPress. XSS exists via the wp-admin/admin-ajax.php PFFREE_Access_Token parameter.
POC
Reference
- https://github.com/d4wner/Vulnerabilities-Report/blob/master/weblizar-pinterest-feeds.md
- https://wpvulndb.com/vulnerabilities/9009
Github
No PoCs found on GitHub currently.