cleantalk
Vulnerabilities and Security Researches

Contact Form by Supsystic, CVE-2024-48046

CVE, Research URL

CVE-2024-48046

Published on
Oct 17, 2024
Research Description
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Supsystic Contact Form by Supsystic allows Stored XSS.This issue affects Contact Form by Supsystic: from n/a through 1.7.28.
Affected versions
max 1.7.29.
Status
vulnerable