Source |
CVE Liste |
Identifiant |
3919283 |
Date de publication |
2022-01-03 13:15:08 (vue: 2022-01-03 16:06:40) |
Titre |
CVE-2021-24991 |
Texte |
The WooCommerce PDF Invoices & Packing Slips WordPress plugin before 2.10.5 does not escape the tab and section parameters before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting in the admin dashboard |
Envoyé |
Oui |
Condensat |
2021 24991 admin attribute back before cross cve dashboard does escape invoices leading not outputting packing parameters pdf plugin reflected scripting section site slips tab woocommerce wordpress |
Tags |
Guideline
|
Stories |
|
Notes |
|
Move |
|