Cross-site scripting (XSS) vulnerability in resize.php in the WebEngage plugin prior to 2.0.1 for WordPress allows remote malicious users to inject arbitrary web script or HTML via the height parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
webengage project webengage |