Unrated severityNVD Advisory· Published Aug 2, 2021· Updated Aug 3, 2024
Yada Wiki < 3.4.1 - Contributor+ Stored XSS
CVE-2021-24470
Description
The Yada Wiki WordPress plugin before 3.4.1 did not sanitise, validate or escape the anchor attribute of its shortcode, leading to a Stored Cross-Site Scripting issue
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- wpscan.com/vulnerability/b01a85cc-0e45-4183-a916-19476354d5d4mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.