Vulnerabilities > Cactusthemes > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-05-30 CVE-2018-11568 Cross-site Scripting vulnerability in Cactusthemes Gameplan-Event and GYM Fitness
Reflected XSS is possible in the GamePlan theme through 1.5.13.2 for WordPress because of insufficient input sanitization, as demonstrated by the s parameter.
4.3