CVE-2020-12076: Supsystic Data Tables Generator
High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.
The data-tables-generator-by-supsystic plugin before 1.9.92 for WordPress lacks CSRF nonce checks for AJAX actions. One consequence of this is stored XSS.
Affected products
- Supsystic Data Tables Generator: before 1.9.92 (fixed in 1.9.92)
Published 2020-04-23. Last modified 2026-06-17.