Vulnerabilities
Vulnerable Software
Flex Local Fonts Project:  Security Vulnerabilities
The Flex Local Fonts WordPress plugin through 1.0.0 does not escape the Class Name field when adding a font, which could allow hight privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.
CVSS Score
4.8
EPSS Score
0.002
Published
2021-12-13


Contact Us

Shodan ® - All rights reserved