CVE-2024-51641
CVSS 3.1 Score 7.1 of 10 (high)
Details
Summary
CVE-2024-51641 is a newly disclosed Cross-Site Request Forgery (CSRF) vulnerability impacting the jcmlmorav Advanced PDF Generator. This issue permits an attacker to execute Stored Cross-Site Scripting (XSS) attacks against unsuspecting users. The flaw affects Advanced PDF Generator versions from n/a through 0.4.0. An attacker can exploit this issue by tricking a user into opening a maliciously crafted PDF document, which could lead to the execution of malicious scripts within the user's web browser. It is crucial for users and organizations to apply the necessary patches as soon as possible to mitigate the risk of potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.