Google Analytics by Yoast <= 5.3.2 - Stored Cross-Site Scripting (XSS)

Affects Plugin

fixed in version 5.3.3

References

PACKETSTORM 130935
URL https://yoast.com/ga-plugin-security-update-more/
URL http://klikki.fi/adv/yoast_analytics.html

Classification

Type XSS
OWASP Top 10 A3: Cross-Site Scripting (XSS)
CWE CWE-79

Miscellaneous

Submitter Kai Armstrong
Submitter Website http://www.kaiarmstrong.com/
Submitter Twitter phikai
Views 4323
Verified No
WPVDB ID 7856

Timeline

Publicly Published 2015-03-19 (over 4 years ago)
Added 2015-03-19 (over 4 years ago)
Last Updated 2015-05-15 (about 4 years ago)