Unpatched Vulnerability
-
I’m seeing the warning below, so have deactivated this plugin. Is it being patched?
Unauthenticated Cross Site Scripting (XSS) in Subscribe2 <= 10.46 versions.
This vulnerability appears to be unpatched. Stay tuned for upcoming plugin updates.
Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’)
The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users.
You must be logged in to reply to this topic.