cve/2021/CVE-2021-24888.md
2025-09-29 21:09:30 +02:00

790 B

CVE-2021-24888

Description

The ImageBoss WordPress plugin before 3.0.6 does not sanitise and escape its Source Name setting, which could allow high privilege users to perform Cross-Site Scripting attacks

POC

Reference

Github