CVE-2024-30442: WordPress Bold Page Builder plugin <= 4.8.0 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BoldThemes Bold Page Builder allows Stored XSS.This issue affects Bold Page Builder: from n/a through 4.8.0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-30442?
CVE-2024-30442 has a high severity rating due to its potential for enabling Stored Cross-Site Scripting (XSS).
How do I fix CVE-2024-30442?
To fix CVE-2024-30442, update Bold Page Builder to a version later than 4.8.0.
What types of attacks can CVE-2024-30442 facilitate?
CVE-2024-30442 can facilitate Stored Cross-Site Scripting attacks, allowing attackers to inject malicious scripts within a web page.
Which versions of Bold Page Builder are affected by CVE-2024-30442?
CVE-2024-30442 affects Bold Page Builder versions up to and including 4.8.0.
What is Cross-Site Scripting in the context of CVE-2024-30442?
Cross-Site Scripting in the context of CVE-2024-30442 refers to a vulnerability that allows attackers to execute scripts in the context of a user's browser.