Gutenslider < 5.2.0 - Contributor+ Stored XSS
CVE-2021-24640
5.4MEDIUM
What is CVE-2021-24640?
The WordPress Slider Block Gutenslider plugin before 5.2.0 does not escape the minWidth attribute of a Gutenburg block, which could allow users with a role as low as contributor to perform Cross-Site Scripting attacks
Affected Version(s)
WordPress Slider Block Gutenslider 5.2.0