The Advanced AJAX Product Filters WordPress plugin does not sanitise the 'term_id' POST parameter before outputting it in the page, leading to reflected Cross-Site Scripting issue.
Metrics
Affected Vendors & Products
References
History
Wed, 13 Nov 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: WPScan
Published: 2024-01-16T15:49:30.490Z
Updated: 2024-11-13T20:17:33.455Z
Reserved: 2021-01-14T15:03:46.692Z
Link: CVE-2021-24432
Vulnrichment
Updated: 2024-08-03T19:28:24.002Z
NVD
Status : Modified
Published: 2024-01-16T16:15:08.850
Modified: 2024-11-21T05:53:03.733
Link: CVE-2021-24432
Redhat
No data.