Sploitus

CVE-2021-24603

1 known exploit for CVE-2021-24603

The Site Reviews WordPress plugin before 5.13.1 does not sanitise some of its Review Details when adding a review as an admin, which could allow them to perform Cross-Site Scripting attacks when the unfiltered_html is disallowed

Affected products
Site Reviews
Geminilabs Site Reviews
< 5.13.1
Fix
Available
CVSS 3.1
5.4 MEDIUM
EPSS
0.6% (47th percentile)
Weakness
CWE-79
NVD status
Modified
Published
2021-09-06
CVE-2021-24603 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2021-24603

Proof-of-concept code and exploit modules indexed by Sploitus