CVE-2020-12696: Iframe Project Iframe

Medium severity, CVSS 6.1. EPSS: 2% chance of exploitation in the next 30 days.

The iframe plugin before 4.5 for WordPress does not sanitize a URL.

Affected products

Published 2020-05-07. Last modified 2026-06-17.