cleantalk
Vulnerabilities and Security Researches

WP-Spreadplugin, CVE-2024-49266

CVE, Research URL

CVE-2024-49266

Application

WP-Spreadplugin

Published on
Oct 16, 2024
Research Description
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Thimo Grauerholz WP-Spreadplugin allows Stored XSS.This issue affects WP-Spreadplugin: from n/a through 4.8.9.
Affected versions
Min -, max 4.8.9.
Status
vulnerable