VYPR

Yuzo Related Posts

by WordPress

CVEs (1)

  • CVE-2019-11869May 9, 2019
    risk 0.01cvss epss 0.11

    The Yuzo Related Posts plugin 5.12.94 for WordPress has XSS because it mistakenly expects that is_admin() verifies that the request comes from an admin user (it actually only verifies that the request is for an admin page). An unauthenticated attacker can inject a payload into…