Cross-site Scripting Vulnerability in Pronamic Google Maps by Pronamic
CVE-2024-56240
6.5MEDIUM
What is CVE-2024-56240?
An improper neutralization of input during the generation of web pages has been identified in the Pronamic Google Maps plugin. This vulnerability allows for Stored XSS, enabling attackers to inject malicious scripts into web pages viewed by users. The issue affects the plugin across versions up to 2.3.2, potentially compromising the security of affected websites and putting user data at risk. Website owners utilizing this plugin should take immediate action to assess their systems and patch to secure their applications.
Affected Version(s)
Pronamic Google Maps <= 2.3.2