Vulnerabilities > Pickplugins > Accordion > 2.2.25
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-05-14 | CVE-2021-24283 | Unspecified vulnerability in Pickplugins Accordion The tab GET parameter of the settings page is not sanitised or escaped when being output back in an HTML attribute, leading to a reflected XSS issue. | 5.4 |