A cross-site scripting vulnerability in post_alert.php in Alert Before Your Post plugin, possibly 0.1.1 and earlier, for WordPress allows remote attackers to inject arbitrary web script or HTML via the name parameter.
id: CVE-2011-5107
info:
name: Alert Before Your Post <= 0.1.1 - Cross-Site Scripting
author: da
...