Stored cross-site scripting (XSS) in text editor widget
🔒
https://portal.patchman.co
«The Elementor Text Editor widget is vulnerable to stored XSS due to insufficient output sanitization. In the render() method, the $editor_content variable is echoed directly without escaping. An authenticated attacker wi...»
Automatische Weiterleitung...
1.5s