CVE-2024-56245: WordPress Premium Blocks plugin <= 2.1.42 - Cross Site Scripting (XSS) vulnerability
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Leap13 Premium Blocks – Gutenberg Blocks for WordPress premium-blocks-for-gutenberg allows Stored XSS.This issue affects Premium Blocks – Gutenberg Blocks for WordPress: from n/a through <= 2.1.42.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-56245?
CVE-2024-56245 has a high severity due to its potential for stored XSS attacks.
How do I fix CVE-2024-56245?
To fix CVE-2024-56245, update Leap13 Premium Blocks for WordPress to the latest version beyond 2.1.42.
Who is affected by CVE-2024-56245?
CVE-2024-56245 affects all versions of Leap13 Premium Blocks for WordPress up to and including version 2.1.42.
What type of vulnerability is CVE-2024-56245?
CVE-2024-56245 is a Cross-site Scripting (XSS) vulnerability, specifically a stored XSS issue.
Can CVE-2024-56245 lead to data breaches?
Yes, if exploited, CVE-2024-56245 can lead to unauthorized access to sensitive user data and session hijacking.