Cross-Site Scripting (XSS) via Cross-Site Request Forgery (CSRF) vulnerability in Store Locator plugin <= 1.4.5 on WordPress.CreditsVulnerability discovered by Nguy Minh Tuan (Patchstack Alliance)Referenceshttps://patchstack.com/database/vulnerability/agile-store-locator/wordpress-store-locator-plugin-1-4-5-cross-site-scripting-xss-via-cross-site-request-forgery-csrf-vulnerability?_s_id=cvehttps://wordpress.org/plugins/agile-store-locator/