Closed tuannm-1876 closed 4 years ago
Hi sayful1, I discovered a Store XSS bug on your plugin. In the information section of the image, I inserted the XSS payload and took the shortcode of the photo slide and inserted a new post with public status.
I view the post and trigger xss
The whole process I do with author accounts.
Hi sayful1, I discovered a Store XSS bug on your plugin. In the information section of the image, I inserted the XSS payload and took the shortcode of the photo slide and inserted a new post with public status.
I view the post and trigger xss
The whole process I do with author accounts.