Vulnerabilities > Jeremyshapiro

DATE CVE VULNERABILITY TITLE RISK
2025-02-12 CVE-2024-13459 Cross-site Scripting vulnerability in Jeremyshapiro Fusedesk
The FuseDesk plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'fusedesk_newcase' shortcode in all versions up to, and including, 6.6.1 due to insufficient input sanitization and output escaping on user supplied attributes.
network
low complexity
jeremyshapiro CWE-79
5.4