CVE-2024-47629

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Oct 5, 2024
Updated: Oct 7, 2024
CWE ID 79

Summary

CVE-2024-47629 represents a Cross-Site Scripting (XSS) vulnerability affecting BdThemes Ultimate Store Kit Elementor Addons. The issue, which allows Stored XSS attacks, can be exploited by cybercriminals to inject malicious scripts into web pages generated by these addons. This vulnerability impacts versions of Ultimate Store Kit Elementor Addons ranging from not available to 2.0.5. Successful exploitation could lead to unauthorized access, data theft, or even the installation of malware on unsuspecting users' systems. It is essential that affected users prioritize updating their addons to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share