CVE-2024-2761
PoC —CVSS 3.1
6.8 medium
EPSS
<1%p50
Published
()
Modified
Description
The Genesis Blocks WordPress plugin before 3.1.3 does not properly escape data input provided to some of its blocks, allowing using with at least contributor privileges to conduct Stored XSS attacks.
- Vendors
- wpengine
- Products
- genesis blocks
- Ecosystems
- WordPress
- Weakness
- CWE-79
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.