Filtered by vendor Daggerhartlab
Subscribe
Filtered by product Openid Connect Generic Client
Subscribe
Total
1 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2021-24214 | 1 Daggerhartlab | 1 Openid Connect Generic Client | 2024-02-28 | 4.3 MEDIUM | 6.1 MEDIUM |
The OpenID Connect Generic Client WordPress plugin 3.8.0 and 3.8.1 did not sanitise the login error when output back in the login form, leading to a reflected Cross-Site Scripting issue. This issue does not require authentication and can be exploited with the default configuration. |