Learn about CVE-2021-39354, an Authenticated Reflected Cross-Site Scripting vulnerability in Easy Digital Downloads up to version 2.11.2. Find out the impact, affected systems, and mitigation steps.
Easy Digital Downloads WordPress plugin up to version 2.11.2 is vulnerable to Reflected Cross-Site Scripting, allowing attackers to inject arbitrary web scripts.