CVE-2024-51811

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Nov 19, 2024
CWE ID 79

Summary

CVE-2024-51811 is a Cross-site Scripting (XSS) vulnerability affecting the Popup Image component from version n/a to 1.0.1. An attacker can inject malicious scripts into the web page generated by this component, exploiting improper input neutralization. The stored XSS attack allows the attacker to execute scripts on the victim's browser whenever they visit a specially crafted webpage, potentially stealing sensitive data or gaining unauthorized access. This vulnerability poses a significant risk to users, making it crucial for affected versions to be updated as soon as possible.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share