Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Connekthq Subscribe
Filtered by product Instant Images - One Click Unsplash Uploads
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24334 1 Connekthq 1 Instant Images - One Click Unsplash Uploads 2021-06-11 3.5 LOW 5.4 MEDIUM
The Instant Images – One Click Unsplash Uploads WordPress plugin before 4.4.0.1 did not properly validate and sanitise its unsplash_download_w and unsplash_download_h parameter settings (/wp-admin/upload.php?page=instant-images), only validating them client side before saving them, leading to a Stored Cross-Site Scripting issue.