HTML5 Video Player with Playlist, CVE-2014-4534
- CVE, Research URL
- Home page URL
- Application
- Published on
- Jul 03, 2014
- Research Description
- Multiple cross-site scripting (XSS) vulnerabilities in videoplayer/autoplay.php in the HTML5 Video Player with Playlist plugin 2.4.0 and earlier for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) theme or (2) playlistmod parameter.
- Affected versions
-
Min -, max 2.4.0.
- Status
-
vulnerable
Previous vulnerability researches |
---|
HTML5 Video Player with Playlist (CVE-2025-32536) , Apr 13, 2025 |
HTML5 Video Player with Playlist (CVE-2014-4534) , Jun 07, 2024 |