cleantalk
Vulnerabilities and Security Researches

Bitcoin / AltCoin Payment Gateway for WooCommerce & Multivendor store / shop, CVE-2021-24679

CVE, Research URL

CVE-2021-24679

Published on
Oct 04, 2021
Research Description
The Bitcoin / AltCoin Payment Gateway for WooCommerce WordPress plugin before 1.6.1 does not escape the 's' GET parameter before outputting back in the All Masking Rules page, leading to a Reflected Cross-Site Scripting issue
Affected versions
Min -, max 1.6.1.
Status
vulnerable