cve/2018/CVE-2018-8729.md
2024-06-18 02:51:15 +02:00

669 B

CVE-2018-8729

Description

Multiple cross-site scripting (XSS) vulnerabilities in the Activity Log plugin before 2.4.1 for WordPress allow remote attackers to inject arbitrary JavaScript or HTML via a title that is not escaped.

POC

Reference

Github