Vulnerabilities > OBG

DATE CVE VULNERABILITY TITLE RISK
2024-01-16 CVE-2021-4227 Injection vulnerability in OBG ARK Wysiwyg Comment Editor 2.15.6
The ark-commenteditor WordPress plugin through 2.15.6 does not properly sanitise or encode the comments when in Source editor, allowing attackers to inject an iFrame in the page and thus load arbitrary content from any page to the comment section
network
low complexity
obg CWE-74
5.3