cve/2021/CVE-2021-24995.md
2025-09-29 21:09:30 +02:00

808 B

CVE-2021-24995

Description

The HTML5 Responsive FAQ WordPress plugin through 2.8.5 does not properly sanitise and escape some of its settings, which could allow a high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed

POC

Reference

Github