Vulnerabilities > Mlfactory

DATE CVE VULNERABILITY TITLE RISK
2021-05-24 CVE-2021-24294 Cross-site Scripting vulnerability in ONE for WP
The dsgvoaio_write_log AJAX action of the DSGVO All in one for WP WordPress plugin before 4.0 did not sanitise or escape some POST parameter submitted before outputting them in the Log page in the administrator dashboard (wp-admin/admin.php?page=dsgvoaiofree-show-log).
network
mlfactory CWE-79
4.3