Cross-site Scripting Vulnerability in RegistrationMagic by Metagauss
CVE-2025-24686
6.1MEDIUM
What is CVE-2025-24686?
The RegistrationMagic plugin by Metagauss is susceptible to a reflected XSS vulnerability due to improper neutralization of input during web page generation. This flaw enables an attacker to inject malicious scripts into web pages viewed by users, potentially compromising user data and security. Affected versions range from n/a up to 6.0.3.3, underscoring the necessity for prompt updates and protective measures to mitigate risk.
Affected Version(s)
RegistrationMagic <= 6.0.3.3