VYPR
Medium severity6.1NVD Advisory· Published Dec 14, 2021· Updated Jun 17, 2026No known patch

CVE-2021-39311

CVE-2021-39311

Description

The link-list-manager WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the category parameter found in the ~/llm.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 1.0.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Range: <=1.0
  • link-list-manager/link-list-managerv5
    Range: 1.0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.