cleantalk
Vulnerabilities and Security Researches

Guest posting / Frontend Posting wordpress plugin – WP Front User Submit / Front Editor, 66bf9d8ddfa7afe2990fc5ef3c7e2c971384f52a

Published on
Jun 13, 2023
Research Description
Guest posting / Frontend Posting / Front Editor – WP Front User Submit [front-editor] < 3.8.0 WordPress WP Front User Submit / Front Editor Plugin < 3.8.0 is vulnerable to Cross Site Scripting (XSS) Update the WordPress WP Front User Submit / Front Editor plugin to the latest available version (at least 3.8.0). Unknown discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress WP Front User Submit / Front Editor Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site. This vulnerability has been fixed in version 3.8.0.
Affected versions
max 3.8.0.
Status
vulnerable