cve/2019/CVE-2019-16523.md
2024-06-18 02:51:15 +02:00

939 B

CVE-2019-16523

Description

The events-manager plugin through 5.9.5 for WordPress (aka Events Manager) is susceptible to Stored XSS due to improper encoding and insertion of data provided to the attribute map_style of shortcodes (locations_map and events_map) provided by the plugin.

POC

Reference

Github