Cross-Site Scripting Vulnerability in GigPress Plugin for WordPress
CVE-2015-9354
4.8MEDIUM
What is CVE-2015-9354?
The GigPress plugin prior to version 2.3.11 for WordPress contains a cross-site scripting (XSS) vulnerability. This weakness allows attackers to inject malicious scripts into web pages viewed by users. If exploited, this vulnerability can lead to unauthorized actions on behalf of users and the compromise of sensitive information.