CVE-2024-30424
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Nov 19, 2024
Updated: Nov 21, 2024
CWE ID 79
Summary
CVE-2024-30424 is a Cross-Site Scripting (XSS) vulnerability affecting WPZOOM's Beaver Builder Addons. The flaw, referred to as Stored XSS, is located in the web page generation process. Hackers can exploit this weakness to inject malicious scripts into a webpage, posing a serious risk to users. The vulnerability exists in Beaver Builder Addons from versions n/a through 1.3.4. Users are strongly advised to upgrade to a patched version as soon as possible to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share