MidnightBSD

Advisories for simple_popup_project

CVE-2014-3921 MEDIUM

Cross-site scripting (XSS) vulnerability in popup.php in the Simple Popup Images plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the z parameter.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-79,

Products Affected

Vendor Product Version
simple_popup_project simple_popup -