CVE-2021-24290

All FrameworksWordPressCWE-79CVE-2021-24290

CVE-2021-24290

State: PUBLISHED · Published: 2021-05-17 · Updated: 2024-08-03 · Assigner: WPScan
Description
There are several endpoints in the Store Locator Plus for WordPress plugin through 5.5.15 that could allow unauthenticated attackers the ability to inject malicious JavaScript into pages.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2021/24xxx/CVE-2021-24290.json