Skip to main content
Loading…
    CVE-2024-6072 — The wp-cart-for-digital-products WordPress plugin before 8.5.5 does not escape the $_SERVER['REQUEST_URI'] parameter before outputting it back in an attribute, which could lead to Reflected Cr — CVE Database · The Intelligence Room