First published: Thu Mar 13 2025(Updated: )
The Limit Bio WordPress plugin through 1.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin
Credit: contact@wpscan.com
Affected Software | Affected Version | How to fix |
---|---|---|
Limit Bio | <1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-13884 has a high severity rating due to its potential impact on high privilege users like admins.
To fix CVE-2024-13884, update the Limit Bio WordPress plugin to a version above 1.0 where this issue is resolved.
CVE-2024-13884 is classified as a Reflected Cross-Site Scripting vulnerability.
CVE-2024-13884 affects users of the Limit Bio WordPress plugin version 1.0 and prior.
An attacker could execute malicious scripts in the context of the affected user's session, particularly targeting high privilege users.