Cross-site Scripting Vulnerability in Brand my Footer by Jake Brown
CVE-2024-51801
6.5MEDIUM
What is CVE-2024-51801?
A vulnerability exists in the Brand my Footer plugin that leads to DOM-based Cross-site Scripting (XSS) due to improper neutralization of user input. Attackers could exploit this issue to execute arbitrary scripts in the context of the user’s browser. This can pose significant security risks, allowing for unauthorized actions and data exposure on affected WordPress sites. It is essential for users of the affected versions to update their plugins to maintain security integrity.
Affected Version(s)
Brand my Footer 0 <= 1.1