The WPGlobus plugin 1.9.6 for WordPress has XSS via the wpglobus_option[post_type][page] parameter to wp-admin/options.php.Referenceshttps://github.com/d4wner/Vulnerabilities-Report/blob/master/wpglobus.mdhttps://wpvulndb.com/vulnerabilities/9003