CVE-2024-51938: WordPress Charity Addon for Elementor plugin <= 1.3.2 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in nicheaddons Charity Addon for Elementor charity-addon-for-elementor allows DOM-Based XSS.This issue affects Charity Addon for Elementor: from n/a through <= 1.3.2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-51938?
CVE-2024-51938 is classified as a high severity vulnerability due to its potential for exploiting cross-site scripting (XSS) attacks.
How do I fix CVE-2024-51938?
To fix CVE-2024-51938, update the NicheAddons Charity Addon for Elementor to version 1.3.3 or later.
What type of vulnerability is CVE-2024-51938?
CVE-2024-51938 is a DOM-Based Cross-site Scripting (XSS) vulnerability affecting the Charity Addon for Elementor.
Who is affected by CVE-2024-51938?
CVE-2024-51938 affects users of the NicheAddons Charity Addon for Elementor from versions prior to 1.3.3.
Can CVE-2024-51938 lead to data exposure?
Yes, CVE-2024-51938 can potentially lead to unauthorized access to user data through exploitation of the XSS vulnerability.