First published: Thu Aug 22 2019(Updated: )
The peters-login-redirect plugin before 2.9.1 for WordPress has XSS during the editing of redirect URLs.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ProfilePress | <2.9.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for the peters-login-redirect plugin is CVE-2016-10925.
CVE-2016-10925 has a severity value of 6.1 (medium).
The affected software for CVE-2016-10925 is the peters-login-redirect plugin before version 2.9.1 for WordPress.
The CWE ID for CVE-2016-10925 is CWE-79.
To fix the XSS vulnerability in the peters-login-redirect plugin, update it to version 2.9.1 or higher.