The WPBakery plugin prior to 6.4.1 for WordPress allows XSS because it calls kses_remove_filters to disable the standard WordPress XSS protection mechanism for the Author and Contributor roles.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
wpbakery page builder |