The Quiz and Survey Master (QSM) WordPress plugin before 9.1.0 does not properly sanitise and escape some of its Quizz settings, which could allow high privilege users such as contributor to perform Stored Cross-Site Scripting attacks
Metrics
Affected Vendors & Products
References
History
Fri, 06 Jun 2025 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-79 |

Status: PUBLISHED
Assigner: WPScan
Published: 2024-08-03T06:00:05.411Z
Updated: 2024-08-05T14:09:05.215Z
Reserved: 2024-06-27T15:26:42.489Z
Link: CVE-2024-6390

Updated: 2024-08-05T14:08:04.813Z

Status : Analyzed
Published: 2024-08-03T06:16:29.320
Modified: 2025-06-06T16:10:55.940
Link: CVE-2024-6390

No data.