Description
Cross-site scripting (XSS) vulnerability in compat.php in Serendipity before 0.7.1 allows remote attackers to inject arbitrary web script or HTML via the searchTerm variable.
Remediation
References
Related Vulnerabilities
WordPress Plugin Htaccess by BestWebSoft Cross-Site Request Forgery (1.8.1)
WordPress Plugin Product Reviews Import Export for WooCommerce CSV Injection (1.4.8)
WordPress Plugin Quick Restaurant Menu Multiple Vulnerabilities (2.0.2)
WordPress Plugin Consulting Elementor Widgets Local File Inclusion (1.3.0)