CVE-2021-36864: WordPress Quiz And Survey Master plugin <= 7.3.4 - Auth. Reflected Cross-Site Scripting (XSS) vulnerability
Auth. (editor+) Reflected Cross-Site Scripting (XSS) vulnerability in ExpressTech Quiz And Survey Master plugin <= 7.3.4 on WordPress.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2021-36864?
CVE-2021-36864 is an Auth. (editor+) Reflected Cross-Site Scripting (XSS) vulnerability in ExpressTech Quiz And Survey Master plugin <= 7.3.4 on WordPress.
What is the severity of CVE-2021-36864?
The severity of CVE-2021-36864 is medium with a CVSS score of 5.4.
How does CVE-2021-36864 affect the ExpressTech Quiz And Survey Master plugin?
CVE-2021-36864 affects the ExpressTech Quiz And Survey Master plugin version 7.3.4 and earlier.
How can I fix CVE-2021-36864?
To fix CVE-2021-36864, update the ExpressTech Quiz And Survey Master plugin to version 7.3.5 or later.
Where can I find more information about CVE-2021-36864?
You can find more information about CVE-2021-36864 at the following links: - [Patchstack](https://patchstack.com/database/vulnerability/quiz-master-next/wordpress-quiz-and-survey-master-plugin-7-3-4-auth-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve) - [WordPress Plugin Directory](https://wordpress.org/plugins/quiz-master-next/#developers)