Stored XSS Vulnerability in Weather Widget Pro
CVE-2024-35755
5.4MEDIUM
What is CVE-2024-35755?
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in El tiempo Weather Widget Pro allows Stored XSS.This issue affects Weather Widget Pro: from n/a through 1.1.40.
Affected Version(s)
Weather Widget Pro <= 1.1.40