Fabrica Synced Pattern Instances Vulnerable to Reflected XSS
CVE-2024-51695
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 9 November 2024
What is CVE-2024-51695?
A vulnerability exists in Fabrica Synced Pattern Instances that allows for reflected Cross-site Scripting (XSS) attacks due to improper neutralization of user inputs during web page generation. This flaw can potentially be exploited by malicious actors to inject arbitrary scripts into the web page, leading to the compromise of user interactions and data security. The affected versions include those prior to 1.0.8, making it crucial for users and administrators to apply necessary patches and update to the latest version to mitigate any potential threats.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Fabrica Synced Pattern Instances <= 1.0.8
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved