CVE-2024-51682: WordPress HT Builder – WordPress Theme Builder for Elementor plugin <= 1.3.0 - Stored Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HasThemes HT Builder – WordPress Theme Builder for Elementor ht-builder allows Stored XSS.This issue affects HT Builder – WordPress Theme Builder for Elementor: from n/a through <= 1.3.0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-51682?
CVE-2024-51682 has a severity classified as high due to its potential for exploitation via stored XSS attacks.
How do I fix CVE-2024-51682?
To fix CVE-2024-51682, update your HasThemes HT Builder to version 1.3.1 or later.
What impact does CVE-2024-51682 have on my website?
CVE-2024-51682 can allow attackers to execute malicious scripts on your website, compromising user data and site integrity.
Which versions of HT Builder are affected by CVE-2024-51682?
CVE-2024-51682 affects HT Builder versions up to and including 1.3.0.
Is CVE-2024-51682 a critical vulnerability?
While CVE-2024-51682 is considered high severity due to its potential impact, whether it is critical depends on your specific website context and existing security measures.