CVE-2020-28707 | Stockdio Historical Chart Plugin up to 2.8.0 on WordPress stockdio_chart_historical-wp.js postMessage cross site scripting
A vulnerability was found in Stockdio Historical Chart Plugin up to 2.8.0 on WordPress. It has been declared as problematic. This affects the function postMessage of the file wp-content/plugins/stockdio-historical-chart/assets/stockdio_chart_historical-wp.js. The manipulation results in cross site scripting.
This vulnerability is reported as CVE-2020-28707. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.