CVE-2024-47390
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Published Oct 5, 2024
Updated: Jan 22, 2025
CWE ID 79
Summary
CVE-2024-47390 is a newly identified Cross-site Scripting (XSS) vulnerability affecting Jegtheme Jeg Elementor Kit. This issue arises due to improper neutralization of user inputs during web page generation. An attacker can exploit this vulnerability to inject malicious scripts, resulting in Stored XSS. The impacted versions of Jeg Elementor Kit range from n/a to 2.6.8. Upgrading to a patched version is recommended to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Jegtheme