First published: Mon Aug 12 2024(Updated: )
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Brainstorm Force Ultimate Addons for Beaver Builder – Lite allows Stored XSS.This issue affects Ultimate Addons for Beaver Builder – Lite: from n/a through 1.5.9.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ultimate Addons for Beaver Builder – Lite | <=1.5.9 | |
Ultimate Addons For Beaver Builder | <=1.5.9 |
Update to 1.5.10 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-43151 is rated as a high severity vulnerability due to its potential for Stored Cross-site Scripting (XSS).
To fix CVE-2024-43151, update the Ultimate Addons for Beaver Builder – Lite plugin to version 1.6.0 or later.
CVE-2024-43151 affects all versions of Ultimate Addons for Beaver Builder – Lite up to and including 1.5.9.
CVE-2024-43151 is an improper neutralization of input during web page generation, specifically a Stored XSS vulnerability.
Exploiting CVE-2024-43151 could allow an attacker to execute arbitrary scripts in the context of a user's browser session.