Unrated severityNVD Advisory· Published Jul 12, 2021· Updated Aug 3, 2024
WP Reset < 1.90 - Authenticated Stored XSS
CVE-2021-24424
Description
The WP Reset – Most Advanced WordPress Reset Tool WordPress plugin before 1.90 did not sanitise or escape its extra_data parameter when creating a snapshot via the admin dashboard, leading to an authenticated Stored Cross-Site Scripting issue
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- WordPress/WP Reset – Most Advanced WordPress Reset Tooldescription
Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- m0ze.ru/vulnerability/%5B2021-05-26%5D-%5BWordPress%5D-%5BCWE-79%5D-WP-Reset-WordPress-Plugin-v1.86.txtmitrex_refsource_MISC
- wpscan.com/vulnerability/90cf8f9d-4d37-405d-b161-239bdb281828mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.