samiahmedsiddiqui/custom-permalinks

samiahmedsiddiqui/custom-permalinks

Releases71
Frequency1 month 2 weeks
Last Release
Stars28
Custom Permalinks is a powerful WordPress plugin that grants you complete control over your site's URLs. Easily set unique, custom permalinks for any post, page, tag, or category, allowing you to design an ideal site structure.

CVE History

CVEPublishedCVSS v3CVSS v2
4.4 MEDIUM

The Custom Permalinks plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.6.0 due to insufficient input sanitization and output escaping on tag names. This allows authenticated users, with editor-level permissions or greater to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page, even when 'unfiltered_html' has been disabled.