← Back

Wp Dialog

wp_dialog

Vendor: Wp Dialog Project • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Wp Dialog Project
1Wp Dialog
Jun 17, 2026
Sep 20, 2021
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
The WP Dialog WordPress plugin through 1.2.5.5 does not sanitise and escape some of its settings before outputting them in pages, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfilt...Show more
The WP Dialog WordPress plugin through 1.2.5.5 does not sanitise and escape some of its settings before outputting them in pages, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.Show less