Sploitus

CVE-2021-24723

1 known exploit for CVE-2021-24723

The WP Reactions Lite WordPress plugin before 1.3.6 does not properly sanitize inputs within wp-admin pages, allowing users with sufficient access to inject XSS payloads within /wp-admin/ pages.

Affected products
Wp Reactions Lite
Wpreactions Wp Reactions Lite
< 1.3.6
Fix
Available
CVSS 3.1
5.4 MEDIUM
EPSS
0.6% (47th percentile)
Weakness
CWE-79
NVD status
Modified
Published
2021-11-01
CVE-2021-24723 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2021-24723

Proof-of-concept code and exploit modules indexed by Sploitus