CVE-2024-51673: WordPress HT Politic plugin <= 2.4.4 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in DevItems HT Politic wp-politic allows DOM-Based XSS.This issue affects HT Politic: from n/a through <= 2.4.4.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-51673?
CVE-2024-51673 is classified as a high severity vulnerability due to its potential for DOM-Based Cross-Site Scripting (XSS).
How do I fix CVE-2024-51673?
To fix CVE-2024-51673, update the HasThemes HT Politic plugin to version 2.4.5 or later.
What versions of HT Politic are affected by CVE-2024-51673?
CVE-2024-51673 affects all versions of HasThemes HT Politic from n/a through 2.4.4.
What type of vulnerability is CVE-2024-51673?
CVE-2024-51673 is an Improper Neutralization of Input During Web Page Generation vulnerability, commonly known as an XSS vulnerability.
Can CVE-2024-51673 be exploited remotely?
Yes, CVE-2024-51673 can be exploited remotely if an attacker can craft specific input that targets the vulnerable application.