Vulnerabilities > Thimpress > Learnpress Export Import > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-11-15 CVE-2024-9609 Cross-site Scripting vulnerability in Thimpress Learnpress Export Import
The LearnPress Export Import – WordPress extension for LearnPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'learnpress_import_form_server' parameter in all versions up to, and including, 4.0.4 due to insufficient input sanitization and output escaping.
network
low complexity
thimpress CWE-79
6.1