[WordPress 微信机器人高级版 Plugin](versions 6.0.1 and older) Vulnerability to Cross-Site Scripting (XSS)
Importance (CVSS3.0)
★★★★★★★☆☆☆ 7.1/ 10 - High
Details
A cross-site scripting (XSS) vulnerability was discovered in WordPress 微信机器人高级版 Plugin.
Because of this vulnerability, malicious attackers can inject fraudulent scripts such as redirect, ads, and other HTML payloads into a website that may be executed when guests visit the website.
This vulnerability hasn’t been fixed yet.
Solutions
Deactive and delete
Source
We provide information about critical vulnerabilities of WordPress for people who are using or are considering using Wordpress for their projects.
“[WordPress 微信机器人高级版 Plugin](versions 6.0.1 and older) Vulnerability to Cross-Site Scripting (XSS) ”, by WS Security is licensed under CC BY 4.0.
Comments