Product
The 10Web Booster WordPress plugin is vulnerable to unauthenticated Stored Cross-Site Scripting (XSS) via the author parameter in versions up to 2.34.8.