Security Advisory
CVE-2024-4749
8.3
HIGH
Vulnerability Description
The wp-eMember WordPress plugin before 10.3.9 does not sanitize and escape the "fieldId" parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting.
Published Date
June 4, 2024
Official Source
NIST NVD Advisory