Security Advisory

CVE-2024-44009

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-09-17 23:02:19
Last updated 2026-04-28 16:10:16
Assigner Patchstack
State PUBLISHED

Description

Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) vulnerability in WC Lovers WCFM Marketplace wc-multivendor-marketplace allows Reflected XSS.This issue affects WCFM Marketplace: from n/a through <= 3.6.11.