CVE-2024-51670: WordPress JS Help Desk plugin <= 2.8.7 - Stored Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in JoomSky JS Help Desk js-support-ticket allows Stored XSS.This issue affects JS Help Desk: from n/a through <= 2.8.7.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-51670?
CVE-2024-51670 is classified as a medium severity vulnerability due to its potential for stored cross-site scripting attacks.
How do I fix CVE-2024-51670?
To remediate CVE-2024-51670, update the JS Help Desk plugin to version 2.8.8 or higher.
What software is affected by CVE-2024-51670?
CVE-2024-51670 affects all versions of the JS Help Desk – Best Help Desk & Support Plugin up to and including version 2.8.7.
What type of vulnerability is CVE-2024-51670?
CVE-2024-51670 is an improper neutralization of input vulnerability that allows for stored cross-site scripting (XSS).
When was CVE-2024-51670 disclosed?
CVE-2024-51670 was disclosed on its official reporting date, but the exact date of discovery is not specified.