MEDIUM
The events-manager plugin through 5.9.5 for WordPress (aka Events Manager) is susceptible to Stored XSS due to improper encoding and insertion of data provided to the attribute map_style of shortcodes (locations_map and events_map) provided by the plugin
Published Oct 16, 2019
5.4
MEDIUMCVSS 3.1
EPSS 1.24%
Description
Affected products
Remediation
References (5)
Change history (0)
No recorded changes yet.