plugin

Steam Group Viewer Vulnerabilities

1 known security issue reported for the Steam Group Viewer WordPress plugin. Most recent disclosed Jun 28, 2021.

1 medium

Running Steam Group Viewer on your site? Check whether your installed version is affected.

Scan your site free

Steam Group Viewer <= 2.1 - Authenticated Stored Cross-Site Scripting

medium

The Steam Group Viewer WordPress plugin through 2.1 does not sanitise or escape its "Steam Group Address" settings before outputting it in the page, leading to an authenticated Stored Cross-Site Scripting issue

CVSS:
6.4
Affected:
up to 2.1
Fix:
No patched version reported
Disclosed:
Jun 28, 2021

CVE-2021-24476 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database