cleantalk
Vulnerabilities and Security Researches

WP User Profile Avatar, CVE-2023-52118

CVE, Research URL

CVE-2023-52118

Published on
Feb 01, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Event Manager WP User Profile Avatar allows Stored XSS.This issue affects WP User Profile Avatar: from n/a through 1.0.
Affected versions
Min -, max 1.0.1.
Status
vulnerable