Skip to main content
Loading…
    CVE-2024-2220 — The Button contact VR WordPress plugin through 4.7 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attack — CVE Database · The Intelligence Room