Medium severity5.4NVD Advisory· Published Jun 28, 2021· Updated Jun 17, 2026
CVE-2021-20746
CVE-2021-20746
Description
Cross-site scripting vulnerability in WordPress Popular Posts 5.3.2 and earlier allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <=5.3.2
- Hector Cabrera/WordPress Popular Postsv5Range: 5.3.2 and earlier
Patches
Vulnerability mechanics
References
4- cabrerahector.comnvdVendor Advisory
- cabrerahector.com/wordpress/wordpress-popular-posts-5-3-improved-php-8-support-retina-display-support-and-more/nvdVendor Advisory
- jvn.jp/en/jp/JVN63066062/index.htmlnvdThird Party Advisory
- wordpress.org/plugins/wordpress-popular-posts/nvdProductRelease NotesThird Party Advisory
News mentions
0No linked articles in our index yet.