CVE-2024-51580
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Summary
CVE-2024-51580 is a newly disclosed Cross-site Scripting (XSS) vulnerability affecting CleverSoft's Clever Addons for Elementor. The flaw, which allows stored XSS attacks, can be exploited by malicious actors to inject malicious scripts into web pages viewed by other users. This issue affects all versions of Clever Addons for Elementor from the earliest available, n/a, through 2.2.1. Successful exploitation of this vulnerability could lead to various types of attacks, including data theft, session hijacking, or even complete website takeover. Users are encouraged to update to the latest version of the plugin to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.