Required CVE Record Information
Description
The LearnPress WordPress plugin before 4.1.3.1 does not properly sanitize or escape various inputs within course settings, which could allow high privilege users to perform Cross-Site Scripting attacks when the unfiltred_html capability is disallowed
Credits
- Shivam Rai
References 1 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.