CVE-2024-51796

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Nov 19, 2024
CWE ID 79

Summary

CVE-2024-51796 is a Cross-site Scripting (XSS) vulnerability affecting WPManageNinja's Trendy Restaurant Menu plugin. The flaw, identified as DOM-Based XSS, resides within the plugin's web page generation process. An attacker can exploit this weakness by injecting malicious scripts into a webpage, potentially stealing user data or gaining unauthorized access. The issue impacts Trendy Restaurant Menu versions from n/a through 1.0.0. Users are advised to update to the latest, secure version as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share