Vulnerabilities (CVE)

Filtered by vendor De-baat Subscribe
Filtered by product Store Locator Plus
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24290 1 De-baat 1 Store Locator Plus 2021-05-24 4.3 MEDIUM 6.1 MEDIUM
There are several endpoints in the Store Locator Plus for WordPress plugin through 5.5.15 that could allow unauthenticated attackers the ability to inject malicious JavaScript into pages.