WordPress FancyProductDesigner 3.4.2 Stored XSS
Posted by deepcore on May 4, 2017 – 9:04 am
WordPress FancyProductDesigner plugin versions prior to 3.4.2 suffer from a persistent cross site scripting vulnerability due to improper sanitization, allowing malicious .svg file uploads.
Post a reply
You must be logged in to post a comment.