6.1
CVSSv3

CVE-2024-12325

CVSSv4: NA | CVSSv3: 6.1 | CVSSv2: NA | VMScore: 710 | EPSS: 0.00251 | KEV: Not Included
Published: 11/12/2024 Updated: 11/12/2024

Vulnerability Summary

Reflected XSS Vulnerability in Waymark Plugin for WordPress 1.4.1

The Waymark plugin for WordPress has a Reflected Cross-Site Scripting vulnerability. This happens through the 'content' parameter and affects all versions up to 1.4.1. The issue is due to insufficient input sanitization and output escaping. This lets attackers inject web scripts into pages. These scripts run if attackers trick users into actions like clicking a link.