The debug-meta-data plugin 1.1.2 for WordPress allows XSS.
References
Link | Resource |
---|---|
https://github.com/ahmadawais/debug-meta-data/blob/master/changelog.md | Release Notes Third Party Advisory |
https://github.com/mandiant/Vulnerability-Disclosures/blob/master/MNDT-2021-0009/MNDT-2021-0009.md | Exploit Third Party Advisory |
https://wordpress.org/plugins/debug-meta-data/#developers | Product Third Party Advisory |
https://github.com/ahmadawais/debug-meta-data/blob/master/changelog.md | Release Notes Third Party Advisory |
https://github.com/mandiant/Vulnerability-Disclosures/blob/master/MNDT-2021-0009/MNDT-2021-0009.md | Exploit Third Party Advisory |
https://wordpress.org/plugins/debug-meta-data/#developers | Product Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2021-12-07 21:15
Updated : 2024-11-21 05:21
NVD link : CVE-2020-27356
Mitre link : CVE-2020-27356
CVE.ORG link : CVE-2020-27356
JSON object : View
Products Affected
debug_meta_data_project
- debug_meta_data
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')