CVE-2024-45456: WordPress WP Meta SEO plugin <= 4.5.13 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in JoomUnited WP Meta SEO wp-meta-seo allows Stored XSS.This issue affects WP Meta SEO: from n/a through <= 4.5.13.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-45456?
CVE-2024-45456 is classified as a high severity vulnerability due to the potential for stored cross-site scripting (XSS).
How do I fix CVE-2024-45456?
To fix CVE-2024-45456, update WP Meta SEO to version 4.5.14 or later, which contains the necessary patches.
What type of vulnerability is CVE-2024-45456?
CVE-2024-45456 is an improper neutralization of input during web page generation leading to stored cross-site scripting (XSS).
Which versions of WP Meta SEO are affected by CVE-2024-45456?
CVE-2024-45456 affects WP Meta SEO versions from the earliest version up to and including 4.5.13.
What are the risks associated with CVE-2024-45456?
The risks associated with CVE-2024-45456 include unauthorized script execution leading to potential data theft or site manipulation.