cve/2023/CVE-2023-5167.md
2024-06-18 02:51:15 +02:00

767 B

CVE-2023-5167

Description

The User Activity Log Pro WordPress plugin before 2.3.4 does not properly escape recorded User-Agents in the user activity logs dashboard, which may allow visitors to conduct Stored Cross-Site Scripting attacks.

POC

Reference

Github

No PoCs found on GitHub currently.