ThreatPress

WordPress Vulnerabilities Database

Back

WordPress Claptastic clap! Button Plugin <= 1.3 - Cross Site Scripting (XSS)

Product
Claptastic clap! Button
Description
This plugin is prone to a cross site scripting vulnerability, because it fails to sufficiently sanitize user-supplied input.
Solution
Update the plugin.
Classification
Type XSS (Cross Site Scripting)
OWASP Top 10 A1: Injection
References
Packet Storm Security
CVE
Name CVE-N/A
Versions
Affected In <= 1.3
Fixed In 1.4
Disclosure date
2016-03-28
Credits
Sachin Wagh
Submitter
ThreatPress