Vulnerability Details CVE-2021-24485
The Special Text Boxes WordPress plugin before 5.9.110 does not sanitise or escape some of its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html is disallowed.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.1%
CVSS Severity
CVSS v3 Score 4.8
CVSS v2 Score 3.5
Products affected by CVE-2021-24485
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:-
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:1.0.1
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:1.1.6
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:1.1.7
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:1.2.11
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:1.2.12
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:1.2.13
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:2.0.20
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:2.0.22
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:2.0.23
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:2.0.25
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.0.27
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.1.29
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.10.59
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.10.60
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.2.32
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.3.35
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.4.40
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.4.41
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.5.44
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.5.45
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.6.49
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.7.51
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.7.52
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.8.55
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:3.9.57
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:4.0.65
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:4.1.69
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:4.2.70
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:4.3.72
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:4.3.73
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:4.4.75
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:4.5.80
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:4.5.81
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.0.85
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.0.86
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.1.88
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.1.90
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.2.91
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.3.93
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.3.94
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.3.95
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.3.96
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.3.97
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.4.98
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.5.100
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.5.101
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.5.102
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.6.103
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.7.105
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.9.107
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.9.108
-
cpe:2.3:a:wp-special-textboxes_project:wp-special-textboxes:5.9.109