Description
Lack of output escaping leads to a XSS vector in the multilingual associations component.
Remediation
References
Related Vulnerabilities
WordPress 4.4.x Multiple Vulnerabilities (4.4 - 4.4.22)
WordPress Plugin DVS Custom Notification Multiple Cross-Site Request Forgery Vulnerabilities (1.0.1)
WordPress Plugin Border Loading Bar Cross-Site Scripting (1.0.1)
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-46731)