CVE-2024-7846

Publication date

2024-09-23 06:00:01

Family

WPScan

State

PUBLISHED

Description

YITH WooCommerce Ajax Search is vulnerable to a XSS vulnerability due to insufficient sanitization of user supplied block attributes. This makes it possible for Contributors+ attackers to inject arbitrary scripts.