Cross-site scripting (XSS) vulnerability in the skeltoac stats (Automattic Stats) 1.0 plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the HTTP Referer field.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Automattic_stats | Skeltoac | 1.0 (including) | 1.0 (including) |