• caglararli@hotmail.com
  • 05386281520

CVE-2021-24559 | Qyrr Plugin 0.7 on WordPress AJAX Action data_uri_to_meta cross site scripting

Çağlar Arlı      -    13 Views

CVE-2021-24559 | Qyrr Plugin 0.7 on WordPress AJAX Action data_uri_to_meta cross site scripting

A vulnerability classified as problematic was found in Qyrr Plugin 0.7 on WordPress. This vulnerability affects the function data_uri_to_meta of the component AJAX Action Handler. The manipulation leads to cross site scripting. This vulnerability was named CVE-2021-24559. The attack can be initiated remotely. There is no exploit available. It is recommended to upgrade the affected component.