Reflected XSS Vulnerability in Zaus Forms: 3rd-Party Post Again
CVE-2024-51783
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 9 November 2024
What is CVE-2024-51783?
A security vulnerability in the Forms: 3rd-Party Post Again plugin by Zaus allows for reflected Cross-Site Scripting (XSS) attacks. This flaw can be exploited through improperly neutralized input during web page generation, potentially enabling attackers to execute malicious scripts in the browser of users accessing vulnerable forms. Such security lapses could lead to data theft, session hijacking, or redirecting users to malicious sites. The affected version is documented as being from n/a through version 0.3, highlighting the urgency for users to evaluate their implementations and apply necessary updates to safeguard web applications.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Forms: 3rd-Party Post Again <= 0.3
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved