Product
The AMP for WP WordPress plugin is vulnerable to stored Cross-Site Scripting via insufficient sanitization of comment content, allowing unauthenticated attackers to execute arbitrary web scripts.