CVE-2018-5654

An issue was discovered in the weblizar-pinterest-feeds plugin 1.1.1 for WordPress. XSS exists via the wp-admin/admin-ajax.php PFFREE_Access_Token parameter.
References
Configurations

Configuration 1

cpe:2.3:a:weblizar:pinterest-feeds:1.1.1:*:*:*:*:wordpress:*:*

Information

Published : 2018-01-13 12:29

Updated : 2018-01-24 03:28


NVD link : CVE-2018-5654

Mitre link : CVE-2018-5654

Products Affected
No products.
CWE