Cross-site Scripting Vulnerability in Move Addons for Elementor by MoveAddons
CVE-2024-56254
What is CVE-2024-56254?
The vulnerability related to improper neutralization of input during web page generation, specifically a stored Cross-site Scripting (XSS) vulnerability, exists in Move Addons for Elementor. Attackers can exploit this weakness to inject malicious scripts that are stored on the server and executed whenever the affected web pages are accessed by users. This poses a significant threat, as it allows intruders to manipulate web content and potentially hijack user sessions, steal confidential information, or perform unauthorized actions on behalf of users. This issue affects versions of Move Addons for Elementor up to 1.3.6, making timely updates crucial for maintaining security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Move Addons for Elementor <= 1.3.6
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved