First published: Fri Dec 13 2024(Updated: )
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager allows Reflected XSS.This issue affects Barcode Scanner with Inventory & Order Manager: from n/a through 1.6.6.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
UkrSolution Barcode Scanner and Inventory Manager WordPress | <=1.6.6 | |
WordPress Qr Code and Barcode Scanner Reader | <=1.6.6 |
Update the WordPress Barcode Scanner with Inventory & Order Manager wordpress plugin to the latest available version (at least 1.6.7).
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-54265 is considered a high severity vulnerability due to its potential for reflected cross-site scripting (XSS) attacks.
To fix CVE-2024-54265, update the Barcode Scanner with Inventory & Order Manager to version 1.6.7 or later.
CVE-2024-54265 affects versions of Barcode Scanner with Inventory & Order Manager from n/a to 1.6.6.
CVE-2024-54265 is classified as a Cross-site Scripting (XSS) vulnerability.
The vendor for the affected product in CVE-2024-54265 is UkrSolution.