cleantalk
Vulnerabilities and Security Researches

YOP Poll, CVE-2021-24885

CVE, Research URL

CVE-2021-24885

Application

YOP Poll

Published on
Oct 25, 2021
Research Description
The YOP Poll WordPress plugin before 6.1.2 does not escape the perpage parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting
Affected versions
max 6.1.2.
Status
vulnerable