CVE-2024-32782: WordPress HT Mega plugin <= 2.4.7 - Sensitive Data Exposure vulnerability
Published Apr 24, 2024
·Updated
Insertion of Sensitive Information Into Sent Data vulnerability in DevItems HT Mega ht-mega-for-elementor.This issue affects HT Mega: from n/a through <= 2.4.7.
Affected Software
3 affected components
HasThemes HT Mega<=2.4.7
WordPress HT Mega<=2.4.7
HasThemes Ht Mega Wordpress<2.4.8
Remediation
Information
Update to 2.4.8 or a higher version.
Event History
Apr 24, 2024
CVE Published
via MITRE·07:52 AM
Data Sourced
via MITRE·07:52 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-32782?
CVE-2024-32782 is classified as a vulnerability that results in the exposure of sensitive information to unauthorized actors.
2
Which versions of HasThemes HT Mega are affected by CVE-2024-32782?
CVE-2024-32782 affects versions of HasThemes HT Mega from an unspecified version up to and including 2.4.7.
3
How do I fix CVE-2024-32782?
To fix CVE-2024-32782, upgrade HasThemes HT Mega to version 2.4.8 or later.
4
What kind of data is exposed in CVE-2024-32782?
CVE-2024-32782 exposes sensitive information, potentially allowing unauthorized access to critical data.
5
Is there a workaround for CVE-2024-32782 if I can't update immediately?
There is no specific publicly available workaround for CVE-2024-32782, so updating to the latest version is recommended.