← Back to CVE List
CVE-2021-36843
Authenticated Stored Cross-Site Scripting (XSS) vulnerability discovered in WordPress Floating Social Media Icon plugin (versions <= 4.3.5) Social Media Configuration form. Requires high role user like admin.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt