CVE Database
/

CVE-2021-24624

Back to search

CVE-2021-24624

Published: Nov 1, 2021

Modified: Aug 3, 2024

PUBLISHED

Description

The MP3 Audio Player for Music, Radio & Podcast by Sonaar WordPress plugin before 2.4.2 does not properly sanitize or escape data in some of its Playlist settings, allowing high privilege users to perform Cross-Site Scripting attacks

VendorProductVersions

Unknown

MP3 Audio Player for Music, Radio & Podcast by Sonaar

affected
2.4.2 - < 2.4.2

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now