Fantastic ElasticSearch WordPress plugin <= 4.1.0 contains a reflected cross-site scripting caused by unsanitized parameter output, letting attackers execute malicious scripts in the context of high privilege users, exploit requires victim to visit a malicious link.
id: CVE-2024-13221
info:
name: Fantastic ElasticSearch Plugin <= 4.1.0 - Cross-Site Scripting
a
...