CVE-2024-37519: WordPress Premium Blocks – Gutenberg Blocks for WordPress plugin <= 2.1.27 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Leap13 Premium Blocks – Gutenberg Blocks for WordPress premium-blocks-for-gutenberg.This issue affects Premium Blocks – Gutenberg Blocks for WordPress: from n/a through <= 2.1.27.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-37519?
The severity of CVE-2024-37519 is considered high due to its potential for Stored XSS attacks.
How do I fix CVE-2024-37519?
To fix CVE-2024-37519, update the Leap13 Premium Blocks – Gutenberg Blocks for WordPress plugin to version 2.1.28 or higher.
What version of the plugin is affected by CVE-2024-37519?
CVE-2024-37519 affects Leap13 Premium Blocks – Gutenberg Blocks for WordPress versions from n/a up to 2.1.27.
What type of vulnerability is CVE-2024-37519?
CVE-2024-37519 is an Improper Neutralization of Input During Web Page Generation, known as a Stored XSS vulnerability.
Can CVE-2024-37519 lead to data theft?
Yes, CVE-2024-37519 can lead to data theft through exploitation of Stored XSS vulnerabilities, allowing attackers to execute malicious scripts.