CVE-2015-9296
The Download Monitor plugin for WordPress contained a cross-site scripting vulnerability in versions before 1.7.1 that could allow attackers to inject malicious scripts into the application.
Based on public CVE data (MITRE/NVD).
CVE · Medium
| CVE | Vulnerability | Type | Severity | Affected | Fixed in | Published | Status |
|---|---|---|---|---|---|---|---|
| CVE-2015-9296 | Download Monitor [download-monitor] < 1.7.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Medium 6.1 | < 1.7.1 | 1.7.1 | 2015-04-20 | — |
The Download Monitor plugin for WordPress contained a cross-site scripting vulnerability in versions before 1.7.1 that could allow attackers to inject malicious scripts into the application.
Based on public CVE data (MITRE/NVD).
No signup, no credit card — enter your URL and get a security report in seconds.