Vulnerabilities > Csshero

DATE CVE VULNERABILITY TITLE RISK
2019-12-04 CVE-2019-19133 Cross-site Scripting vulnerability in Csshero 4.0.3
The CSS Hero plugin through 4.0.3 for WordPress is prone to reflected XSS via the URI in a csshero_action=edit_page request because it fails to sufficiently sanitize user-supplied input.
network
low complexity
csshero CWE-79
6.1