CVE-2024-4477

The WP Logs Book WordPress plugin through 1.0.1 does not sanitise and escape some of its log data before outputting them back in an admin dashboard, leading to an Unauthenticated Stored Cross-Site Scripting
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:onetarek:wp_logs_book:*:*:*:*:*:wordpress:*:*

History

No history.

Information

Published : 2024-06-21 06:15

Updated : 2024-07-12 16:12


NVD link : CVE-2024-4477

Mitre link : CVE-2024-4477

CVE.ORG link : CVE-2024-4477


JSON object : View

Products Affected

onetarek

  • wp_logs_book
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')