Vulnerabilities > AYS PRO > Survey Maker > 5.1.3.0

DATE CVE VULNERABILITY TITLE RISK
2025-01-26 CVE-2024-13505 Cross-site Scripting vulnerability in Ays-Pro Survey Maker
The Survey Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘ays_sections[5][questions][8][title]’ parameter in all versions up to, and including, 5.1.3.3 due to insufficient input sanitization and output escaping.
network
low complexity
ays-pro CWE-79
4.8