Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Code for Recovery 12 Step Meeting List allows Reflected XSS.This issue affects 12 Step Meeting List: from n/a through 3.14.33.
References
Configurations
History
29 Aug 2024, 21:17
Type | Values Removed | Values Added |
---|---|---|
References | () https://patchstack.com/database/vulnerability/12-step-meeting-list/wordpress-12-step-meeting-list-plugin-3-14-33-cross-site-scripting-xss-vulnerability?_s_id=cve - Third Party Advisory | |
Summary |
|
|
First Time |
Code4recovery
Code4recovery 12 Step Meeting List |
|
CPE | cpe:2.3:a:code4recovery:12_step_meeting_list:*:*:*:*:*:wordpress:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.1 |
08 Jun 2024, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-08 15:15
Updated : 2024-08-29 21:17
NVD link : CVE-2024-35693
Mitre link : CVE-2024-35693
CVE.ORG link : CVE-2024-35693
JSON object : View
Products Affected
code4recovery
- 12_step_meeting_list
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')