Description
Unauthenticated Cross-Site Scripting (XSS) vulnerability in Tripetto's Tripetto plugin <= 5.1.4 on WordPress via SVG image upload.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Update to 5.2.0 or higher version.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-23471 | Unauthenticated Cross-Site Scripting (XSS) vulnerability in Tripetto's Tripetto plugin <= 5.1.4 on WordPress via SVG image upload. |
References
History
Fri, 21 Feb 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-04-28T16:07:36.665Z
Reserved: 2021-07-19T00:00:00.000Z
Link: CVE-2021-36895
Updated: 2024-08-04T01:01:59.827Z
Status : Modified
Published: 2022-04-26T19:15:49.427
Modified: 2024-11-21T06:14:16.007
Link: CVE-2021-36895
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD