Medium severity6.1NVD Advisory· Published Jan 13, 2020· Updated Jun 17, 2026
CVE-2019-20211
CVE-2019-20211
Description
The CTHthemes CityBook before 2.3.4, TownHub before 1.0.6, and EasyBook before 1.2.2 themes for WordPress allow Persistent XSS via Listing Address, Listing Latitude, Listing Longitude, Email Address, Description, Name, Job or Position, Description, Service Name, Address, Latitude, Longitude, Phone Number, or Website.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- CTHthemes/CityBookdescription
Patches
Vulnerability mechanics
References
9- cxsecurity.com/issue/WLB-2019120110nvdExploitThird Party Advisory
- cxsecurity.com/issue/WLB-2019120111nvdExploitThird Party Advisory
- cxsecurity.com/issue/WLB-2019120112nvdExploitThird Party Advisory
- themeforest.net/item/citybook-directory-listing-wordpress-theme/21694727nvdThird Party Advisory
- themeforest.net/item/easybook-directory-listing-wordpress-theme/23206622nvdThird Party Advisory
- themeforest.net/item/townhub-directory-listing-wordpress-theme/25019571nvdThird Party Advisory
- wpvulndb.com/vulnerabilities/10013nvdThird Party Advisory
- wpvulndb.com/vulnerabilities/10014nvdThird Party Advisory
- wpvulndb.com/vulnerabilities/10018nvdThird Party Advisory
News mentions
0No linked articles in our index yet.