ZeroHour

CVE-2024-10896

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p32
Published
()
Modified
Description

The Logo Slider WordPress plugin before 4.5.0 does not sanitise and escape some of its Logo and Slider settings, which could allow high privilege users such as Contributor to perform Stored Cross-Site Scripting

Vendors
logichunt
Products
logo slider
Ecosystems
WordPress
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.