Stored XSS vulnerability in ITERAS ITERAS
CVE-2024-53710
7.1HIGH
What is CVE-2024-53710?
A Cross-Site Request Forgery (CSRF) vulnerability exists in the ITERAS Plugin, which can lead to Stored Cross-Site Scripting (XSS) attacks. This security flaw allows an attacker to trick a victim into executing unwanted actions on a web application in which the victim is authenticated. Specifically, this vulnerability affects the ITERAS Plugin from versions n/a through 1.7.0, allowing potential exploits that can compromise user data and security.
Affected Version(s)
ITERAS 0 <= 1.8.0