13 Layers
SHARE

The Alojapro Widget WordPress plugin through 1.1.15 doesn’t properly sanitise its Custom CSS settings, allowing high privilege users to perform Cross-Site Scripting attacks level when the unfiltered_html capability is disallowed (CVSS:0.0) (Concluding Update:2021-09-20)

13 Layers Managed Security Services