Thursday, September 26, 2019

New vulnerability on the NVD: CVE-2015-9426

The manual-image-crop plugin before 1.11 for WordPress has CSRF with resultant XSS via the wp-admin/admin-ajax.php?action=mic_editor_window postId parameter.

Published at: September 26, 2019 at 04:15AM
View on website

No comments:

Post a Comment