First published: Wed Mar 27 2024(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Epsiloncool WP Fast Total Search allows Stored XSS.This issue affects WP Fast Total Search: from n/a through 1.59.211.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
WordPress WP Fast Total Search | <=1.59.211 | |
WordPress WP Fast Total Search | <=1.59.211 |
Update to 1.60.213 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-29799 is classified as a medium severity vulnerability due to its potential for causing stored cross-site scripting (XSS) attacks.
To fix CVE-2024-29799, update the WP Fast Total Search plugin to the latest version beyond 1.59.211.
CVE-2024-29799 can facilitate stored cross-site scripting (XSS) attacks, compromising user data and session information.
CVE-2024-29799 affects users of the WP Fast Total Search plugin version 1.59.211 and earlier.
The impact of CVE-2024-29799 on web applications can lead to unauthorized access and manipulation of user data through XSS exploits.