Vulnerabilities > Cactusthemes

DATE CVE VULNERABILITY TITLE RISK
2018-05-30 CVE-2018-11568 Cross-site Scripting vulnerability in Cactusthemes Gameplan-Event and GYM Fitness
Reflected XSS is possible in the GamePlan theme through 1.5.13.2 for WordPress because of insufficient input sanitization, as demonstrated by the s parameter.
network
low complexity
cactusthemes CWE-79
6.1