CVE-2024-13624 Information

Description

The WPMovieLibrary WordPress plugin through 2.1.4.8 does not sanitise and escape a parameter before outputting it back in the page leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin.

Reference

https://wpscan.com/vulnerability/c19b56cc-634f-420f-b6a0-9a10ad159049/

Share on: