cve/2021/CVE-2021-25039.md
2024-05-25 21:48:12 +02:00

864 B

CVE-2021-25039

Description

The WordPress Multisite Content Copier/Updater WordPress plugin before 2.1.0 does not sanitise and escape the wmcc_content_type, wmcc_source_blog and wmcc_record_per_page parameters before outputting them back in attributes, leading to Reflected Cross-Site Scripting issues

POC

Reference

Github

No PoCs found on GitHub currently.