CVE-2024-29924: WordPress Premium Packages plugin <= 5.8.2 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in W3 Eden, Inc. Premium Packages allows Reflected XSS.This issue affects Premium Packages: from n/a through 5.8.2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-29924?
CVE-2024-29924 has been categorized as a Cross-site Scripting (XSS) vulnerability, which can result in the exposure of sensitive user data.
How do I fix CVE-2024-29924?
To fix CVE-2024-29924, upgrade the W3 Eden Premium Packages to version 5.8.3 or later to mitigate the vulnerability.
What versions of Premium Packages are affected by CVE-2024-29924?
CVE-2024-29924 affects all versions of W3 Eden Premium Packages up to and including 5.8.2.
What type of vulnerabilities does CVE-2024-29924 exploit?
CVE-2024-29924 exploits reflected Cross-site Scripting (XSS) vulnerabilities during web page generation.
Is CVE-2024-29924 specific to any platform?
Yes, CVE-2024-29924 specifically affects the W3 Eden Premium Packages used on WordPress sites.