Security Advisory

CVE-2024-7846

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-09-23 06:00:01
Last updated 2024-09-23 15:27:52
Assigner WPScan
State PUBLISHED

Description

YITH WooCommerce Ajax Search is vulnerable to a XSS vulnerability due to insufficient sanitization of user supplied block attributes. This makes it possible for Contributors+ attackers to inject arbitrary scripts.