Ready! Coming Soon <= 0.5.0 Stored Cross-Site Scripting and Cross-Site Request Forgery
mediumThe Ready! Coming Soon plugin for WordPress is vulnerable to Cross-Site Scripting and Cross-Site Request Forgery in versions up to, and including, 0.5.0. This allows unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. Additionally unauthenticat...
- CVSS:
- 6.1
- Affected:
- up to 0.5.1
- Fixed in:
- 0.5.1
- Disclosed:
- Sep 1, 2014