CVE Database /
CVE-2018-9034
CVE · Medium
CVE-2018-9034 — Relevanssi – A Better Search [relevanssi] < 4.0.5
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2018-9034
|
Relevanssi – A Better Search [relevanssi] < 4.0.5 |
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
Medium
5.4
|
< 4.0.5
|
4.0.5 |
2018-03-30 |
—
|
CVE-2018-9034
The Relevanssi plugin for WordPress before version 4.0.5 contains a cross-site scripting flaw in its lib/interface.php file that enables attackers to execute malicious scripts or inject HTML code through the tab GET parameter.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings