CVE-2024-11938 | One Click Upsell Funnel Plugin up to 3.4.9 on WordPress Shortcode wps_wocuf_pro_yes cross site scripting
A vulnerability was found in One Click Upsell Funnel Plugin up to 3.4.9 on WordPress. It has been classified as problematic. This affects the function wps_wocuf_pro_yes of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-11938. It is possible to initiate the attack remotely. There is no exploit available.