Stored XSS Vulnerability in WTI Like Post Plugin for WordPress
CVE-2020-8799
4.8MEDIUM
What is CVE-2020-8799?
A Stored Cross-Site Scripting (XSS) vulnerability exists in the WTI Like Post plugin for WordPress, specifically in the administration page. This issue allows an attacker to insert malicious scripts that are stored within the application. When an administrator submits data, the injected script can then be executed by unsuspecting users who visit the affected website. This could lead to unauthorized actions or access to confidential information when users interact with the compromised site.