CVE-2019-14799: XSS
The FV Flowplayer Video Player plugin before 7.3.14.727 for WordPress allows email subscription XSS.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-14799?
CVE-2019-14799 is a vulnerability found in the FV Flowplayer Video Player plugin for WordPress, allowing email subscription XSS.
What is the severity of CVE-2019-14799?
CVE-2019-14799 has a severity keyword of 'medium' and a severity value of 6.1.
How does CVE-2019-14799 impact the FV Flowplayer Video Player plugin?
CVE-2019-14799 allows attackers to execute malicious scripts via email subscription XSS.
How can I fix CVE-2019-14799?
To fix CVE-2019-14799, update the FV Flowplayer Video Player plugin to version 7.3.14.727 or newer.
Are there any references related to CVE-2019-14799?
Yes, you can find references to CVE-2019-14799 at the following URLs: [1] https://wordpress.org/plugins/fv-wordpress-flowplayer/#developers [2] https://wpvulndb.com/vulnerabilities/9278 [3] https://www.pluginvulnerabilities.com/2019/05/15/information-disclosure-vulnerability-in-fv-player-fv-flowplayer-video-player/