First published: Tue Oct 29 2024(Updated: )
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ioannup Code Generate allows Reflected XSS.This issue affects Code Generate: from n/a through 1.0.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
ioannup Code Generate | <=1.0 | |
WordPress Code Generate | <=1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-49646 is identified as a reflected Cross-site Scripting (XSS) vulnerability.
To mitigate CVE-2024-49646, update ioannup Code Generate to the latest version beyond 1.0.
CVE-2024-49646 affects ioannup Code Generate and WordPress Code Generate, both up to version 1.0.
Cross-site Scripting in CVE-2024-49646 allows attackers to inject malicious scripts into web pages viewed by users.
Yes, CVE-2024-49646 can be exploited remotely, allowing attackers to execute scripts in the context of the victim's browser.