cve/2023/CVE-2023-5167.md
2024-06-09 00:33:16 +00:00

840 B

CVE-2023-5167

Description

The User Activity Log Pro WordPress plugin before 2.3.4 does not properly escape recorded User-Agents in the user activity logs dashboard, which may allow visitors to conduct Stored Cross-Site Scripting attacks.

POC

Reference

Github

No PoCs found on GitHub currently.