WP DeskLite WordPress plugin through 1.0.0 contains a reflected XSS caused by unsanitized and unescaped parameter output, letting attackers execute scripts against high privilege users such as admin, exploit requires crafted request.
id: CVE-2024-12724
info:
name: WP DeskLite - Reflected XSS
author: Sourabh-Sahu
severity: med
...