PT-2024-34760 · Clyp · Clyp

Soprobro

·

Published

2024-11-19

·

Updated

2024-11-23

·

CVE-2024-51617

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Clyp versions 1.3 and earlier
Description The issue is related to improper neutralization of input during web page generation, which allows stored cross-site scripting (XSS). This is a critical reflected XSS vulnerability. Users are urged to update to the latest version to mitigate risks. The vulnerability can be exploited by attackers to perform reflected cross-site scripting.
Recommendations For Clyp version 1.3 and earlier, update to the latest version immediately to secure your site. As a temporary workaround, consider restricting access to vulnerable components until a patch is available.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-51617

Affected Products

Clyp