CVE-2021-39354 | Easy Digital Downloads Plugin up to 2.11.2 class-payments-table.php start_date/end_date cross site scripting (ID 2616149)
A vulnerability was found in Easy Digital Downloads Plugin up to 2.11.2. It has been declared as problematic. This vulnerability affects unknown code of the file ~/includes/admin/payments/class-payments-table.php. The manipulation of the argument start_date/end_date leads to cross site scripting.
This vulnerability was named CVE-2021-39354. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.