CVE-2021-24640
Description
The WordPress Slider Block Gutenslider plugin before 5.2.0 does not escape the minWidth attribute of a Gutenburg block, which could allow users with a role as low as contributor to perform Cross-Site Scripting attacks
CWE
- CWE-79 — CWE-79 Cross-site Scripting (XSS)
Affected
- Unknown / WordPress Slider Block Gutenslider — v=5.2.0 <5.2.0 [affected]
CVSS
- (none)
References
Source
cvelistV5-main/cves/2021/24xxx/CVE-2021-24640.json