cleantalk
Vulnerabilities and Security Researches

Structured Content (JSON-LD) #wpsc, CVE-2024-24839

CVE, Research URL

CVE-2024-24839

Published on
Feb 05, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Gordon Böhme, Antonio Leutsch Structured Content (JSON-LD) #wpsc allows Stored XSS.This issue affects Structured Content (JSON-LD) #wpsc: from n/a through 1.6.1.
Affected versions
Min -, max 1.6.2.
Status
vulnerable