CVE-2024-51914: WordPress drop in image slideshow gallery plugin <= 12.0 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in gopiplus drop in image slideshow gallery drop-in-image-slideshow-gallery allows DOM-Based XSS.This issue affects drop in image slideshow gallery: from n/a through <= 12.0.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-51914?
CVE-2024-51914 is classified as a high-severity vulnerability due to its potential for DOM-Based XSS attacks.
How do I fix CVE-2024-51914?
To remediate CVE-2024-51914, update the drop in image slideshow gallery plugin to version 12.1 or later.
What software is affected by CVE-2024-51914?
CVE-2024-51914 affects versions of the drop in image slideshow gallery plugin up to 12.0.
What type of vulnerability is CVE-2024-51914?
CVE-2024-51914 is a Cross-site Scripting (XSS) vulnerability resulting from improper neutralization of input.
Can CVE-2024-51914 be exploited by attackers?
Yes, attackers can exploit CVE-2024-51914 to execute malicious scripts in the context of the user’s browser.