Cross-Site Request Forgery (CSRF) vulnerability in Ernest Marcinko Ajax Search Lite allows Reflected XSS.This issue affects Ajax Search Lite: from n/a through 4.11.4.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-19366 | Cross-Site Request Forgery (CSRF) vulnerability in Ernest Marcinko Ajax Search Lite allows Reflected XSS.This issue affects Ajax Search Lite: from n/a through 4.11.4. |
Fixes
Solution
Update to 4.11.5 or a higher version.
Workaround
No workaround given by the vendor.
References
History
Tue, 18 Mar 2025 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wp-dreams
Wp-dreams ajax Search |
|
| CPEs | cpe:2.3:a:wp-dreams:ajax_search:*:*:*:*:lite:wordpress:*:* | |
| Vendors & Products |
Wp-dreams
Wp-dreams ajax Search |
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-04-22T15:53:08.802Z
Reserved: 2024-01-02T09:05:10.996Z
Link: CVE-2024-21752
Updated: 2024-08-01T22:27:36.288Z
Status : Analyzed
Published: 2024-02-29T06:15:47.067
Modified: 2025-03-18T11:53:39.520
Link: CVE-2024-21752
No data.
OpenCVE Enrichment
No data.
EUVD