CVE-2024-51614
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Summary
CVE-2024-51614 is a newly disclosed Cross-Site Scripting (XSS) vulnerability affecting the Aajoda Testimonials plugin. This issue, specifically a Stored XSS flaw, is located within the plugin's web page generation process. The vulnerability enables attackers to inject malicious scripts into a targeted website, potentially stealing user data or taking control of user sessions. Websites using Aajoda Testimonials versions from n/a to 2.2.2 are at risk. It is crucial for affected organizations to apply the necessary patches as soon as possible to mitigate the threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.