Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-24797 | The Brizy Page Builder plugin <= 2.3.11 for WordPress was vulnerable to stored XSS by lower-privileged users such as a subscribers. It was possible to add malicious JavaScript to a page by modifying the request sent to update the page via the brizy_update_item AJAX action and adding JavaScript to the data parameter, which would be executed in the session of any visitor viewing or previewing the post or page. |
Fri, 14 Feb 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2025-02-14T18:12:02.020Z
Reserved: 2021-08-09T00:00:00.000Z
Link: CVE-2021-38344
Updated: 2024-08-04T01:37:16.502Z
Status : Modified
Published: 2021-10-14T16:15:09.187
Modified: 2024-11-21T06:16:51.557
Link: CVE-2021-38344
No data.
OpenCVE Enrichment
No data.
EUVD