Vulnerabilities > Easy Media Download Project

DATE CVE VULNERABILITY TITLE RISK
2021-10-25 CVE-2021-24699 Cross-site Scripting vulnerability in Easy Media Download Project Easy Media Download
The Easy Media Download WordPress plugin before 1.1.7 does not escape the text argument of its shortcode, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks.
network
low complexity
easy-media-download-project CWE-79
5.4