Vulnerabilities > Fetchdesigns > Sign UP Sheets > 2.2.11

DATE CVE VULNERABILITY TITLE RISK
2024-09-04 CVE-2024-6020 Cross-site Scripting vulnerability in Fetchdesigns Sign-Up Sheets
The Sign-up Sheets WordPress plugin before 2.2.13 does not escape some generated URLs, as well as the $_SERVER['REQUEST_URI'] parameter before outputting them back in attributes, which could lead to Reflected Cross-Site Scripting.
network
low complexity
fetchdesigns CWE-79
6.1