cleantalk
Vulnerabilities and Security Researches

Ajax Search Lite, CVE-2024-7084

CVE, Research URL

CVE-2024-7084

Application

Ajax Search Lite

Published on
Aug 06, 2024
Research Description
The Ajax Search Lite WordPress plugin before 4.12.1 does not sanitise and escape some parameters, which could allow users with a role as low as Admin+ to perform Cross-Site Scripting attacks.
Affected versions
max 4.12.1.
Status
vulnerable