CVE-2011-4568

Foliovision FV Wordpress Flowplayer Plugin < 1.12.11 - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in view/frontend-head.php in the Flowplayer plugin before 1.2.12 for WordPress allows remote attackers to inject arbitrary web script or HTML via the URI.

Scores

EPSS 0.0019
EPSS Percentile 41.0%

Classification

CWE
CWE-79
Status published

Affected Products (27)

foliovision/fv_wordpress_flowplayer_plugin < 1.12.11
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
foliovision/fv_wordpress_flowplayer_plugin
... and 12 more

Timeline

Published Nov 29, 2011
Tracked Since Feb 18, 2026