The easy-pdf-restaurant-menu-upload plugin before 1.1.2 for WordPress has XSS.

%d bloggers like this: