Description
Lack of output escaping in the id attribute of menu lists.
Remediation
References
Related Vulnerabilities
WordPress Plugin Cool Timeline (Horizontal & Vertical Timeline) Security Bypass (2.3.3)
WordPress Plugin Thumbnail carousel slider Arbitrary File Upload (1.0)
WordPress Plugin Video Gallery /w YouTube, Vimeo Multiple Vulnerabilities (8.80)
WordPress Plugin WP-Predict 'predictId' Parameter Blind SQL Injection (1.0)
Jboss EAP Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2023-3171)