Vulnerabilities > Wpuslugi > RSS FOR Yandex Turbo > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-05-14 | CVE-2021-24277 | Cross-site Scripting vulnerability in Wpuslugi RSS for Yandex Turbo The RSS for Yandex Turbo WordPress plugin before 1.30 did not properly sanitise the user inputs from its ???????? settings tab before outputting them back in the page, leading to authenticated stored Cross-Site Scripting issues | 5.4 |