CVE Database
/

CVE-2021-24290

Back to search

CVE-2021-24290

Published: May 17, 2021

Modified: Aug 3, 2024

PUBLISHED

Description

There are several endpoints in the Store Locator Plus for WordPress plugin through 5.5.15 that could allow unauthenticated attackers the ability to inject malicious JavaScript into pages.

VendorProductVersions

Store Locator Plus®

Store Locator Plus for WordPress

affected
5.5.15 - <= 5.5.15

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now