cve/2021/CVE-2021-24322.md
2024-06-18 02:51:15 +02:00

899 B

CVE-2021-24322

Description

The Database Backup for WordPress plugin before 2.4 did not escape the backup_recipient POST parameter in before output it back in the attribute of an HTML tag, leading to a Stored Cross-Site Scripting issue.

POC

Reference

Github

No PoCs found on GitHub currently.