Cross-site scripting (XSS) vulnerability in settings/pwsettings.php in the Your Text Manager plugin 0.3.0 and previous versions for WordPress allows remote malicious users to inject arbitrary web script or HTML via the ytmpw parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
your-text-manager project your-text-manager |