MemberSpace WordPress plugin < 2.1.14 contains a reflected XSS caused by unsanitized and unescaped parameter output, letting unauthenticated attackers execute scripts, exploit requires no authentication.
id: CVE-2024-13727
info:
name: MemberSpace WordPress - Cross-Site Scripting
author: Sourabh-Sah
...