First published: Fri Mar 29 2024(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Supsystic Slider by Supsystic allows Stored XSS.This issue affects Slider by Supsystic: from n/a through 1.8.10.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Supsystic WordPress Slider | <=1.8.10 | |
Supsystic WordPress Slider | <=1.8.10 |
Update to 1.8.11 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-30448 is classified as a Stored XSS vulnerability affecting Slider by Supsystic versions up to 1.8.10.
To resolve CVE-2024-30448, upgrade Slider by Supsystic to a version beyond 1.8.10 that includes the security fix.
CVE-2024-30448 allows attackers to inject malicious scripts into web pages, potentially compromising user data and website integrity.
Yes, if you are using Supsystic Slider or WordPress Slider by Supsystic versions up to 1.8.10, your site is vulnerable to CVE-2024-30448.
Regularly update your plugins and implement web application security measures to protect against CVE-2024-30448.