PT-2024-23782 · Unknown · Convert Post Types

Dimas Maulana

·

Published

2024-03-31

·

Updated

2024-04-01

·

CVE-2024-31112

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Convert Post Types versions 1.4 and earlier
Description The issue is related to improper neutralization of input during web page generation, which can lead to Cross-site Scripting (XSS), specifically Reflected XSS.
Recommendations For Convert Post Types versions 1.4 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-31112

Affected Products

Convert Post Types