CVE-2024-43330: WordPress PowerPack for Beaver Builder plugin < 2.37.4 - Reflected Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in IdeaBox Creations PowerPack for Beaver Builder allows Reflected XSS.This issue affects PowerPack for Beaver Builder: from n/a before 2.37.4.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-43330?
CVE-2024-43330 is classified as a high severity vulnerability due to its potential for reflected cross-site scripting (XSS) attacks.
How do I fix CVE-2024-43330?
To fix CVE-2024-43330, upgrade PowerPack for Beaver Builder to version 2.37.4 or later.
What type of vulnerability is CVE-2024-43330?
CVE-2024-43330 is an improper neutralization of input vulnerability that allows for reflected cross-site scripting (XSS).
What software is affected by CVE-2024-43330?
CVE-2024-43330 affects versions of PowerPack for Beaver Builder prior to 2.37.4.
What are the risks associated with CVE-2024-43330?
The risks associated with CVE-2024-43330 include potential data theft, session hijacking, and unauthorized actions taken on behalf of the user.