# Exploit Title: WordPress Theme phlox-pro 5.14.0 - 'searchform' Cross-Site Scripting (XSS) # Date: 3/12/2023 # Exploit Author: Haktrak Team # Vendor Homepage: https://phlox.pro # Software Link: https://www.phlox.pro/go/ # Version: 5.14.0 # Tested on: Linux[apache]/wordrepss 6.3.1 Description: A Cross Site Scripting (XSS) vulnerability exists in WordPress Theme phlox-pro Vulnerable Code: