Medium severity6.1NVD Advisory· Published Feb 1, 2022· Updated Jun 17, 2026
CVE-2021-25091
CVE-2021-25091
Description
The Link Library WordPress plugin before 7.2.9 does not sanitise and escape the settingscopy parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:ylefebvre:link_library:*:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:ylefebvre:link_library:*:*:*:*:*:wordpress:*:*range: <7.2.9
- (no CPE)range: 7.2.9
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/96204946-0b10-4a2c-8079-473883ff95b6nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.