The GTranslate plugin prior to 2.8.52 for WordPress has Reflected XSS via a crafted link. This requires use of the hreflang tags feature within a sub-domain or sub-directory paid option.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gtranslate translate wordpress with gtranslate |