Search Results (21 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-24808 1 Wordplus 1 Better Messages 2024-11-21 6.1 Medium
The BP Better Messages WordPress plugin before 1.9.9.41 sanitise (with sanitize_text_field) but does not escape the 'subject' parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting issue