Security Advisory
CVE-2017-5942
6.1
MEDIUM
Vulnerability Description
An issue was discovered in the WP Mail plugin before 1.2 for WordPress. The replyto parameter when composing a mail allows for a reflected XSS. This would allow you to execute JavaScript in the context of the user receiving the mail.
Published Date
February 10, 2017
Official Source
NIST NVD Advisory