Description
The ultimate-member plugin before 1.3.40 for WordPress has XSS on the login form.
Remediation
References
Related Vulnerabilities
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.39)
MySQL CVE-2014-6464 Vulnerability (CVE-2014-6464)
WordPress Plugin Restaurant Reservations Privilege Escalation (1.3)
SharePoint CVE-2023-33134 Vulnerability (CVE-2023-33134)
Ruby on Rails URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2023-22797)