Medium severity6.1NVD Advisory· Published Nov 15, 2021· Updated Jun 17, 2026
CVE-2021-41951
CVE-2021-41951
Description
ResourceSpace before 9.6 rev 18290 is affected by a reflected Cross-Site Scripting vulnerability in plugins/wordpress_sso/pages/index.php via the wordpress_user parameter. If an attacker is able to persuade a victim to visit a crafted URL, malicious JavaScript content may be executed within the context of the victim's browser.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- ResourceSpace/ResourceSpacedescription
- Range: < 9.6 rev 18290
Patches
Vulnerability mechanics
References
1- www.horizon3.ai/multiple-vulnerabilities-in-resourcespace/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.