Cross-site Scripting Vulnerability in Oshine Modules by NotFound
CVE-2024-44044
7.1HIGH
What is CVE-2024-44044?
The vulnerability in Oshine Modules developed by NotFound allows for improper neutralization of input during web page generation, leading to a reflected cross-site scripting (XSS) issue. This type of vulnerability enables attackers to inject malicious scripts into web pages viewed by users, potentially compromising user data and security. Websites utilizing affected versions of the Oshine Modules are at risk, and immediate action is recommended to secure the web application.
Affected Version(s)
Oshine Modules < 3.3.8