Ldap WP Login / Active Directory Integration < 3.0.2 - Cross-Site Scripting
The plugin does not escape generated URLs before outputing them in attrubutes, leading to Reflected Cross-Site Scripting
CVSS—
共找到 1 条公开漏洞记录
The plugin does not escape generated URLs before outputing them in attrubutes, leading to Reflected Cross-Site Scripting