Vulnerabilities > Comment Engine PRO Project

DATE CVE VULNERABILITY TITLE RISK
2021-12-10 CVE-2021-36911 Cross-site Scripting vulnerability in Comment Engine PRO Project Comment Engine PRO
Stored Cross-Site Scripting (XSS) vulnerability discovered in WordPress Comment Engine Pro plugin (versions <= 1.0), could be exploited by users with Editor or higher role.
network
low complexity
comment-engine-pro-project CWE-79
5.4