Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Web357 Easy Custom Code (LESS/CSS/JS) – Live editing allows Stored XSS.This issue affects Easy Custom Code (LESS/CSS/JS) – Live editing: from n/a through 1.0.8.
History

Fri, 30 Aug 2024 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Web357
Web357 easy Custom Code
CPEs cpe:2.3:a:web357:easy_custom_code:*:*:*:*:*:wordpress:*:*
Vendors & Products Web357
Web357 easy Custom Code

cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published: 2024-07-21T07:05:57.917Z

Updated: 2024-08-02T03:57:39.603Z

Reserved: 2024-06-09T18:16:46.935Z

Link: CVE-2024-37536

cve-icon Vulnrichment

Updated: 2024-08-02T03:57:39.603Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-21T07:15:02.650

Modified: 2024-08-30T20:29:11.573

Link: CVE-2024-37536

cve-icon Redhat

No data.