ThinkTwit < 1.7.1 - Stored Cross-Site Scripting
mediumThe ThinkTwit WordPress plugin before 1.7.1 did not sanitise or escape its "Consumer key" setting before outputting it its settings page, leading to a Stored Cross-Site Scripting issue.
- CVSS:
- 6.4
- Affected:
- up to 1.7.1
- Fixed in:
- 1.7.1
- Disclosed:
- Aug 18, 2021