Medium severity4.8NVD Advisory· Published Oct 28, 2022· Updated Jun 17, 2026
CVE-2021-36858
CVE-2021-36858
Description
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Themepoints Testimonials plugin <= 2.6 on WordPress.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <=2.6
- Themepoints/Testimonials (WordPress plugin)v5Range: <= 2.6
Patches
Vulnerability mechanics
References
2- patchstack.com/database/vulnerability/super-testimonial/wordpress-testimonials-plugin-2-6-auth-stored-cross-site-scripting-xss-vulnerabilitynvdThird Party Advisory
- wordpress.org/plugins/super-testimonial/nvdProductThird Party Advisory
News mentions
0No linked articles in our index yet.