WordPress Marmoset Viewer plugin before 1.9.3 contains a cross-site scripting vulnerability. It does not property sanitize, validate, or escape the 'id' parameter before outputting back in the page.Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view