In WP-SVG WordPress plugin versions 0.9 and prior a medium severity vulnerability CVE-2024-11644 was detected. This vulnerability allows users with the contributor role and above to perform Stored Cross-Site Scripting (XSS) attacks by exploiting unvalidated and unescaped shortcode attributes. No patched version has been officially released at this time. For more details, visit https://nvd.nist.gov/vuln/detail/CVE-2024-11644.