CVE-2024-32674: XSS
Published May 8, 2024
·Updated
Heateor Social Login WordPress prior to 1.1.32 contains a cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the website using the product.
Affected Software
2 affected components
Heateor Social Login<1.1.32
Heateor Social Login WordPress<1.1.32
Event History
May 8, 2024
CVE Published
via MITRE·03:37 AM
Data Sourced
via MITRE·03:37 AM
DescriptionWeakness
Data Sourced
via NVD·04:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32674?
CVE-2024-32674 has a moderate severity level as it poses a cross-site scripting vulnerability.
2
How do I fix CVE-2024-32674?
To fix CVE-2024-32674, update Heateor Social Login to version 1.1.32 or later.
3
Who is affected by CVE-2024-32674?
Users of Heateor Social Login for WordPress versions prior to 1.1.32 are affected by CVE-2024-32674.
4
What type of vulnerability is CVE-2024-32674?
CVE-2024-32674 is classified as a cross-site scripting (XSS) vulnerability.
5
What could happen if CVE-2024-32674 is exploited?
If exploited, CVE-2024-32674 could allow an attacker to execute arbitrary scripts on the web browser of users accessing the affected website.