Description
The ultimate-member plugin before 2.0.52 for WordPress has XSS related to UM Roles create and edit operations.
Remediation
References
Related Vulnerabilities
WordPress Plugin WordPress Download Manager Cross-Site Request Forgery (3.2.12)
WordPress Plugin Contact Form by BestWebSoft Cross-Site Scripting (4.0.5)
WordPress Plugin Hotjar Connecticator Cross-Site Scripting (1.1.1)
TCExam Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3806)
WordPress Plugin Easy Redirect Manager Cross-Site Scripting (2.18.18)