The HTML5 Responsive FAQ WordPress plugin up to and including 2.8.5 does not properly sanitise and escape some of its settings, which could allow a high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
html5 responsive faq project html5 responsive faq |