Medium severity6.1NVD Advisory· Published Jun 4, 2016· Updated May 6, 2026
CVE-2016-4812
CVE-2016-4812
Description
Cross-site scripting (XSS) vulnerability in the Markdown on Save Improved plugin before 2.5.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected products
1- cpe:2.3:a:markdown_on_saved_improved_project:markdown_on_saved_improved:*:*:*:*:*:wordpress:*:*Range: <=2.5
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- jvn.jp/en/jp/JVN26026353/index.htmlnvdVendor Advisory
- jvndb.jvn.jp/jvndb/JVNDB-2016-000071nvdVendor Advisory
- srd.wordpress.org/plugins/markdown-on-save-improved/changelog/nvdVendor Advisory
News mentions
0No linked articles in our index yet.