First published: Fri Aug 30 2024(Updated: )
A cross-site scripting (XSS) vulnerability in the component admin_datarelate.php of SeaCMS v12.9 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tina Tinacms | ||
Tina Tinacms | =12.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-44918 is classified as medium, as it allows for cross-site scripting attacks.
To fix CVE-2024-44918, ensure to sanitize and validate all user inputs in the admin_datarelate.php component.
The potential impacts of CVE-2024-44918 include the execution of arbitrary web scripts or HTML, leading to data theft or session hijacking.
CVE-2024-44918 affects SeaCMS v12.9.
Yes, CVE-2024-44918 is a common cross-site scripting vulnerability found in web applications.