CVE-2024-30196: WordPress Easy Social Share Buttons plugin <= 9.4 - Reflected Cross Site Scripting (XSS) vulnerability
Published Mar 27, 2024
·Updated
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Appscreo Easy Social Share Buttons allows Reflected XSS.This issue affects Easy Social Share Buttons: from n/a through 9.4.
Affected Software
1 affected component
Appscreo Easy Social Share Buttons<=9.4
Remediation
Information
Update to 9.5 or a higher version.
Event History
Mar 27, 2024
CVE Published
via MITRE·06:37 AM
Data Sourced
via MITRE·06:37 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·07:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-30196?
CVE-2024-30196 is rated as a critical vulnerability due to its potential for reflected cross-site scripting (XSS).
2
How do I fix CVE-2024-30196?
To mitigate CVE-2024-30196, update the Easy Social Share Buttons plugin to a version higher than 9.4.
3
What versions are affected by CVE-2024-30196?
CVE-2024-30196 affects all versions of Easy Social Share Buttons from n/a to 9.4.
4
What kind of attacks can be executed through CVE-2024-30196?
CVE-2024-30196 allows attackers to execute reflected cross-site scripting (XSS) attacks.
5
Is CVE-2024-30196 specific to a platform?
Yes, CVE-2024-30196 specifically affects the Easy Social Share Buttons plugin used with WordPress.