Cross-site scripting (XSS) vulnerability in the qTranslate plugin 2.5.39 and previous versions for WordPress allows remote malicious users to inject arbitrary web script or HTML via the edit parameter in the qtranslate page to wp-admin/options-general.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
qtranslate project qtranslate |