The Easy FAQ with Expanding Text WordPress plugin up to and including 3.2.8.3.1 does not sanitise and escape its settings, allowing high privilege users to perform Cross-Site Scripting attacks when unfiltered_html is disallowed
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
easy faq with expanding text project easy faq with expanding text |