Vulnerabilities (CVE)

Filtered by vendor Prothemedesign Subscribe
Filtered by product Browser Screenshots
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24439 1 Prothemedesign 1 Browser Screenshots 2024-11-21 3.5 LOW 5.4 MEDIUM
The Browser Screenshots WordPress plugin before 1.7.6 allowed authenticated users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks as the image_class parameter of the browser-shot shortcode was not escaped.