The Spam protection, Honeypot, Anti-Spam by CleanTalk plugin for WordPress is vulnerable to stored cross-site scripting via insufficient input sanitization in the comment content aria-label placeholder, allowing attackers to execute arbitrary scripts in the browsers of site visitors.
Spam protection, Honeypot, Anti-Spam by CleanTalk
xss
web-vulnerability
wordpress
1t
1c