Cross-Site Request Forgery (CSRF) vulnerability in Jason Grim Custom Shortcode Sidebars custom-shortcode-sidebars allows Stored XSS.This issue affects Custom Shortcode Sidebars: from n/a through <= 1.2.CreditsSOPROBRO | Patchstack Bug Bounty ProgramReferenceshttps://patchstack.com/database/Wordpress/Plugin/custom-shortcode-sidebars/vulnerability/wordpress-custom-shortcode-sidebars-plugin-1-2-csrf-to-stored-xss-vulnerability?_s_id=cve