The Autoptimize WordPress plugin prior to 2.8.4 was missing proper escaping and sanitisation in some of its settings, allowing high privilege users to set XSS payloads in them, leading to stored Cross-Site Scripting issues
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
autoptimize autoptimize |