Ultimate FAQ – WordPress FAQ and Accordion Plugin, CVE-2020-7107
- CVE, Research URL
- Published on
- Jan 16, 2020
- Research Description
- The Ultimate FAQ plugin before 1.8.30 for WordPress allows XSS via Display_FAQ to Shortcodes/DisplayFAQs.php.
- Affected versions
-
max 1.8.30.
- Status
-
vulnerable