CVE-2024-47382

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Oct 5, 2024
Updated: Oct 7, 2024
CWE ID 79

Summary

CVE-2024-47382 is a newly identified Cross-site Scripting (XSS) vulnerability affecting the Page-list component of Webvitaly. This issue permits malicious scripts to be stored and executed in web pages generated by the Page-list feature. The vulnerability can potentially impact Page-list versions from n/a to 5.6. Attackers may exploit this weakness to inject malicious code into unsuspecting users' browsers, leading to data theft, unauthorized access, or other malicious activities. Users are strongly advised to update their Page-list implementation as soon as a patch becomes available.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share