The Video Slider WordPress plugin before 1.4.8 does not sanitize or escape some of its video settings, which could allow high-privileged users to perform Cross-Site Scripting attacks even when unfiltered_html is disallowedCreditsFayçal CHENAReferenceshttps://wpscan.com/vulnerability/053a9815-cf0a-472e-844a-3dea407ce022