CVE-2024-12400 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

The tourmaster WordPress plugin before 5.3.5 does not escape generated URLs before outputting them in attributes, leading to Reflected Cross-Site Scripting.
High CVSS: 7.1

CVE-2024-12400

The tourmaster WordPress plugin before 5.3.5 does not escape generated URLs before outputting them in attributes, leading to Reflected Cross-Site Scripting.
Vendor
Goodlayers
Product
Tour Master
CWE
CWE-79
Yayın Tarihi
2025-01-30 06:15:29
Güncelleme
2025-06-09 21:20:17
Source Identifier
contact@wpscan.com
KEV Date Added
-

Kategoriler

Referanslar