CVE Database
/

CVE-2021-24327

Back to search

CVE-2021-24327

Published: May 17, 2021

Modified: Aug 3, 2024

PUBLISHED

Description

The SEO Redirection Plugin – 301 Redirect Manager WordPress plugin before 6.4 did not sanitise the Redirect From and Redirect To fields when creating a new redirect in the dashboard, allowing high privilege users (even with the unfiltered_html disabled) to set XSS payloads

VendorProductVersions

Unknown

SEO Redirection Plugin – 301 Redirect Manager

affected
6.4 - < 6.4

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now