Vulnerabilities > Pickplugins > Accordion > Low
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-05-14 | CVE-2021-24283 | Cross-site Scripting vulnerability in Pickplugins Accordion The tab GET parameter of the settings page is not sanitised or escaped when being output back in an HTML attribute, leading to a reflected XSS issue. | 3.5 |
2020-05-28 | CVE-2020-13644 | Cross-site Scripting vulnerability in Pickplugins Accordion An issue was discovered in the Accordion plugin before 2.2.9 for WordPress. | 3.5 |