Vulnerabilities > Wpuslugi

DATE CVE VULNERABILITY TITLE RISK
2021-05-14 CVE-2021-24277 Cross-site Scripting vulnerability in Wpuslugi RSS for Yandex Turbo
The RSS for Yandex Turbo WordPress plugin before 1.30 did not properly sanitise the user inputs from its ???????? settings tab before outputting them back in the page, leading to authenticated stored Cross-Site Scripting issues
network
low complexity
wpuslugi CWE-79
5.4