Viewing 2 replies - 1 through 2 (of 2 total)
  • So… This doesn’t really seem like an exploitable vulnerability. Please send us an email on [email protected] showing the vulnerability and how it can be exploited and of course then we will fix it.

    May I point out to you that disclosing an XSS issue on a public forum is bluntly rude and puts your fellow users at risk. Like most big plugin builders, Yoast has a security@ mail address for responsible disclosure. And even security emails to our support mail make it through 99% of the time.

    Jon (Kenshino)

    (@kenshino)

    Lord Jon

    Hey besweeet, thanks for trying to help.

    Please do responsible disclosure of security issues.

    Send it to the official security team of the plugin author.

    Cheers!

Viewing 2 replies - 1 through 2 (of 2 total)
  • The topic ‘Yoast SEO – Reflected Cross-Site Scripting (XSS) Vulnerabilities’ is closed to new replies.