Share
## https://sploitus.com/exploit?id=WPEX-ID:A9BCA7A6-C409-41D4-995E-48FD0F8264A3
As a subscriber, edit your profile and add the following payload in the Job Title field (Tutor Fields section): " autofocus onfocus=alert('XSS')//

The XSS will be triggered when an admin edit the subscriber profile (as well when the user edit their own profile, but that’s self-XSS)