First published: Tue Mar 19 2024(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss RegistrationMagic allows Reflected XSS.This issue affects RegistrationMagic: from n/a through 5.2.5.9.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
RegistrationMagic User Registration Plugin | <5.2.6.0 | |
Metagauss Leadmagic | <=5.2.5.9 | |
RegistrationMagic | <=5.2.5.9 |
Update to 5.2.6.0 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-29113 is classified as a Medium severity vulnerability due to its potential for reflected cross-site scripting attacks.
To fix CVE-2024-29113, upgrade Metagauss RegistrationMagic to version 5.2.6.0 or later.
CVE-2024-29113 can facilitate reflected cross-site scripting attacks, potentially allowing attackers to execute malicious scripts in users' browsers.
CVE-2024-29113 affects Metagauss RegistrationMagic versions up to and including 5.2.5.9.
CVE-2024-29113 specifically impacts the Metagauss RegistrationMagic plugin used within WordPress.