Vulnerabilities (CVE)

Filtered by vendor Any Hostname Project Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24481 1 Any Hostname Project 1 Any Hostname 2024-02-28 3.5 LOW 4.8 MEDIUM
The Any Hostname WordPress plugin through 1.0.6 does not sanitise or escape its "Allowed hosts" setting, leading to an authenticated stored XSS issue as high privilege users are able to set XSS payloads in it