The Voting Record WordPress plugin up to and including 2.0 is missing sanitisation as well as escaping, which could allow any authenticated users, such as subscriber to perform Stored XSS attacks
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
davidjmiller voting record |