Cross-site Scripting (XSS) Vulnerability in WP Dynamic Keywords Injector
CVE-2024-32528
What is CVE-2024-32528?
The Seerox WP Dynamic Keywords Injector plugin contains a vulnerability that allows for reflected Cross-Site Scripting (XSS). This occurs due to improper input sanitization during web page generation. Attackers can exploit this vulnerability in versions of the plugin up to 2.3.18, potentially leading to unauthorized script execution in the context of the user's session. It is crucial for users of this plugin to review their configurations and apply best security practices to mitigate potential risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
WP Dynamic Keywords Injector <= 2.3.18
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved