cleantalk
Vulnerabilities and Security Researches

Attesa Extra, CVE-2024-32594

CVE, Research URL

CVE-2024-32594

Application

Attesa Extra

Published on
Apr 18, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AttesaWP Attesa Extra allows Stored XSS.This issue affects Attesa Extra: from n/a through 1.3.9.
Affected versions
max 1.4.0.
Status
vulnerable