Cross-Site Request Forgery (CSRF) vulnerability in Shibu Lijack a.k.a CyberJack CJ Custom Content allows Stored XSS.This issue affects CJ Custom Content: from n/a through 2.0.CreditsSOPROBRO (Patchstack Alliance)Referenceshttps://patchstack.com/database/wordpress/plugin/cj-custom-content/vulnerability/wordpress-cj-custom-content-plugin-2-0-csrf-to-cross-site-scripting-vulnerability?_s_id=cve