CVE-2024-25099: WordPress Paytium: Mollie payment forms & donations Plugin <= 4.4.2 is vulnerable to Cross Site Scripting (XSS)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in David de Boer Paytium: Mollie payment forms & donations allows Stored XSS.This issue affects Paytium: Mollie payment forms & donations: from n/a through 4.4.2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-25099?
The severity of CVE-2024-25099 is classified as high due to its potential for Stored Cross-site Scripting (XSS) attacks.
How do I fix CVE-2024-25099?
To fix CVE-2024-25099, update the Paytium: Mollie payment forms & donations plugin to version 4.4.3 or later.
Which versions are affected by CVE-2024-25099?
CVE-2024-25099 affects Paytium: Mollie payment forms & donations versions up to and including 4.4.2.
What is Stored XSS as described in CVE-2024-25099?
Stored XSS in CVE-2024-25099 allows attackers to inject malicious scripts that are stored on the server and executed when users access affected pages.
Who should be concerned about CVE-2024-25099?
Website administrators and users of the Paytium: Mollie payment forms & donations plugin should prioritize addressing CVE-2024-25099 to protect against security threats.