CVE-2013-6010
Wearegumball Comment-attachment - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in the Comment Attachment plugin 1.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via the "Attachment field title."
Scores
EPSS
0.0020
EPSS Percentile
41.5%
Details
CWE
CWE-79
Status
published
Products (2)
wearegumball/comment-attachment
n/a/n/a
Published
Oct 03, 2013
Tracked Since
Feb 18, 2026