Cross-site Scripting Vulnerability in Royal Elementor Addons by WP Royal
CVE-2024-56062
5.4MEDIUM
What is CVE-2024-56062?
The vulnerability identified in WP Royal's Royal Elementor Addons stems from improper neutralization of user inputs during web page generation, specifically leading to a Cross-site Scripting (XSS) attack. Attackers can exploit this Stored XSS vulnerability to inject malicious scripts into web applications, potentially compromising user data and session integrity. This flaw affects users of Royal Elementor Addons in all versions up to and including 1.3.987, underscoring the need for prompt updates and remediation to safeguard against potential exploits.
Affected Version(s)
Royal Elementor Addons <= 1.3.987