
🚨 CVE-2024-13097 - medium 🚨 WP Finance Plugin <= 1.3.6 - Cross-Site Scripting > WP Finance WordPress plugin <= 1.3.6 contains a reflected cross-site scripting caused... 👾 https://cloud.projectdiscovery.io/library/CVE-2024-13097 @pdnuclei #NucleiTemplates #cve
Post summary
A medium‑severity reflected XSS flaw was disclosed in WP Finance plugin versions up to 1.3.6, with a link to a detection template, but no PoC, exploit, patch, or evidence of active exploitation was provided.
