Vulnerabilities > Sayandatta > WP Last Modified Info

DATE CVE VULNERABILITY TITLE RISK
2024-08-20 CVE-2024-6864 Cross-site Scripting vulnerability in Sayandatta WP Last Modified Info
The WP Last Modified Info plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘template’ attribute of the lmt-post-modified-info shortcode in all versions up to, and including, 1.9.0 due to insufficient input sanitization and output escaping.
network
low complexity
sayandatta CWE-79
5.4