CVE-2024-47327
CVSS 3.1 Score 7.1 of 10 (high)
Details
Summary
CVE-2024-47327 is a Cross-Site Scripting (XSS) vulnerability affecting the GEO my WordPress plugin. Hackers can exploit this issue, which occurs during web page generation, by injecting malicious scripts into a targeted website. The vulnerability exists in versions 4.5.0.3 and below of the plugin, posing a significant risk to affected websites. Successful exploitation can lead to various attacks, including identity theft, unauthorized access, and data theft. Users of the GEO my WordPress plugin are advised to update to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.