CVE-2024-50655: XSS
Published Nov 15, 2024
·Updated
emlog pro <=2.3.18 is vulnerable to Cross Site Scripting (XSS), which allows attackers to write malicious JavaScript code in published articles.
Affected Software
1 affected component
Emlog emlog<=2.3.18
Event History
Nov 15, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-50655?
CVE-2024-50655 is classified as a medium severity vulnerability due to its potential to exploit XSS.
2
How does CVE-2024-50655 affect Emlog Pro users?
CVE-2024-50655 allows attackers to inject malicious JavaScript code into articles, compromising user security.
3
How can I fix CVE-2024-50655?
To fix CVE-2024-50655, users should upgrade Emlog Pro to version 2.3.19 or later, which eliminates the XSS vulnerability.
4
What versions are impacted by CVE-2024-50655?
CVE-2024-50655 affects all Emlog Pro versions up to and including 2.3.18.
5
Is CVE-2024-50655 related to other vulnerabilities?
CVE-2024-50655 is specifically an XSS vulnerability but may be exploited in conjunction with other security weaknesses.