CVE-2024-24881

All FrameworksWordPressCWE-79CVE-2024-24881

CVE-2024-24881

State: PUBLISHED · Published: 2024-02-08 · Updated: 2024-08-01 · Assigner: Patchstack
Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VeronaLabs WP SMS – Messaging & SMS Notification for WordPress, WooCommerce, GravityForms, etc allows Reflected XSS.This issue affects WP SMS – Messaging & SMS Notification for WordPress, WooCommerce, GravityForms, etc: from n/a through 6.5.2.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2024/24xxx/CVE-2024-24881.json