CVE-2024-47329: WordPress ElementsReady Addons for Elementor plugin <= 6.4.0 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in quomodosoft ElementsReady Addons for Elementor element-ready-lite allows Cross-Site Scripting (XSS).This issue affects ElementsReady Addons for Elementor: from n/a through <= 6.4.0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-47329?
CVE-2024-47329 is classified as a high severity vulnerability due to its potential to allow stored cross-site scripting (XSS) attacks.
How do I fix CVE-2024-47329?
To fix CVE-2024-47329, update the ElementsReady Addons for Elementor plugin to a version higher than 6.4.0.
What type of vulnerability is CVE-2024-47329?
CVE-2024-47329 is an improper neutralization of input during web page generation, commonly known as a cross-site scripting (XSS) vulnerability.
Which versions of ElementsReady Addons for Elementor are affected by CVE-2024-47329?
CVE-2024-47329 affects ElementsReady Addons for Elementor versions up to and including 6.4.0.
Can CVE-2024-47329 affect user data?
Yes, CVE-2024-47329 can affect user data as it allows attackers to inject malicious scripts through stored XSS.