CVE Published: 06/08/2024 |
CVE Updated: 27/10/2024 |
CVE Year: 2024 Source: WPScan |
Vendor: Unknown |
Product: Easy Table of Contents Status : PUBLISHED
CVE-2024-7082 Description
The Easy Table of Contents WordPress plugin before 2.0.68 does not sanitise and escape some parameters, which could allow users with a role as low as Editor to perform Cross-Site Scripting attacks.