The BackupBuddy WordPress plugin before 8.8.3 does not sanitise and escape some parameters before outputting them back in various places, leading to Reflected Cross-Site Scripting
Affected Software
Name |
Vendor |
Start Version |
End Version |
Backupbuddy |
Ithemes |
* |
8.8.3 (excluding) |
References