The Bg Bible References WordPress plugin through 3.8.14 does not sanitize and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Bg_bible_references | Bg_bible_references_project | * | 3.18.4 (including) |