Filtered by vendor Gvectorsteam Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-6704 2 Gvectors, Gvectorsteam 2 Wpdiscuz, Comments-wpdiscuz 2025-06-05 5.3 Medium
The Comments – wpDiscuz plugin for WordPress is vulnerable to HTML Injection in all versions up to, and including, 7.6.21. This is due to a lack of filtering of HTML tags in comments. This makes it possible for unauthenticated attackers to add HTML such as hyperlinks to comments when rich editing is disabled.