Stored XSS Vulnerability in ShiftController Employee Shift Scheduling
CVE-2024-44040
5.9MEDIUM
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 6 October 2024
What is CVE-2024-44040?
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in plainware ShiftController Employee Shift Scheduling shiftcontroller allows Stored XSS.This issue affects ShiftController Employee Shift Scheduling: from n/a through <= 4.9.64.
Affected Version(s)
ShiftController Employee Shift Scheduling 0 <= 4.9.64