CVE Published: 21/06/2021 |
CVE Updated: 03/08/2024 |
CVE Year: 2021 Source: WPScan |
Vendor: Unknown |
Product: WP Hardening – Fix Your WordPress Security Status : PUBLISHED
CVE-2021-24372 Description
The WP Hardening – Fix Your WordPress Security WordPress plugin before 1.2.2 did not sanitise or escape the $_SERVER[\'REQUEST_URI\'] before outputting it in an attribute, leading to a reflected Cross-Site Scripting issue.