"value":"The WordPress Comments Fields WordPress plugin before 4.1 does not escape Field Error Message, which could allow high-privileged users to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed"
},
{
"lang":"es",
"value":"El plugin Comments Fields de WordPress versiones anteriores a 4.1, no escapa del mensaje de error de campo, lo que podr\u00eda permitir a usuarios con altos privilegios llevar a cabo ataques de tipo Cross-Site Scripting incluso cuando la capacidad unfiltered_html est\u00e1 desautorizada"