First published: Tue Apr 23 2024(Updated: )
Forminator prior to 1.15.4 contains a cross-site scripting vulnerability. If this vulnerability is exploited, a remote attacker may obtain user information etc. and alter the page contents on the user's web browser.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Forminator | <1.15.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-31857 is considered medium due to the potential for cross-site scripting exploitation.
To fix CVE-2024-31857, upgrade Forminator to version 1.15.4 or later.
CVE-2024-31857 is a cross-site scripting (XSS) vulnerability.
Users of Forminator version prior to 1.15.4 are affected by CVE-2024-31857.
If exploited, an attacker can obtain user information and alter page contents in the user's web browser.