pretty-link-lite [pretty-link-lite] < 1.5.6
unknown[en] Pretty-Link WordPress plugin 1.5.2 has XSS
- Affected:
- up to 1.5.6
- Fixed in:
- 1.5.6
- Disclosed:
- Jan 10, 2020
plugin
3 known security issues reported for the Pretty Link Lite WordPress plugin. Most recent disclosed Jan 10, 2020.
Running Pretty Link Lite on your site? Check whether your installed version is affected.
Scan your site free[en] Pretty-Link WordPress plugin 1.5.2 has XSS
Cross-site scripting (XSS) vulnerability in pretty-bar.php in Pretty Link Lite plugin before 1.5.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the slug parameter, a different vulnerability than CVE-2011-5191.
Cross-site scripting (XSS) vulnerability in pretty-bar.php in Pretty Link Lite plugin before 1.5.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the slug parameter, a different vulnerability than CVE-2011-5192.
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free