Vulnerabilities > Cookie BAR Project

DATE CVE VULNERABILITY TITLE RISK
2021-10-25 CVE-2021-24653 Cross-site Scripting vulnerability in Cookie-Bar Project Cookie-Bar 1.8.8
The Cookie Bar WordPress plugin before 1.8.9 doesn't properly sanitise the Cookie Bar Message setting, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed
network
low complexity
cookie-bar-project CWE-79
4.8