Reflected XSS Vulnerability in Tainacan.Org
CVE-2024-34794
6.1MEDIUM
What is CVE-2024-34794?
The Tainacan Plugin for WordPress presents a security vulnerability due to improper neutralization of input during web page generation, allowing for potential Reflected Cross-Site Scripting (XSS) attacks. This flaw can lead to unauthorized execution of scripts in the user's browser, potentially compromising sensitive information or facilitating further attacks. Validating and sanitizing user inputs is essential to mitigate these risks, especially for versions ranging from n/a up to 0.21.3 of the Tainacan Plugin.
Affected Version(s)
Tainacan <= 0.21.3