Cross-Site Scripting Vulnerability in Popup Box WordPress Plugin

Cross-Site Scripting Vulnerability in Popup Box WordPress Plugin

CVE-2023-6591 · Severity

The Popup Box WordPress plugin before 20.9.0 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

Learn more about our Wordpress Pen Testing.