cve/2024/CVE-2024-27959.md

18 lines
991 B
Markdown
Raw Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2024-27959](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-27959)
![](https://img.shields.io/static/v1?label=Product&message=WC%20Shop%20Sync%20%E2%80%93%20Integrate%20Square%20and%20WooCommerce%20for%20Seamless%20Shop%20Management&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-79%20Improper%20Neutralization%20of%20Input%20During%20Web%20Page%20Generation%20('Cross-site%20Scripting')&color=brighgreen)
### Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Wpexpertsio WC Shop Sync Integrate Square and WooCommerce for Seamless Shop Management allows Reflected XSS.This issue affects WC Shop Sync Integrate Square and WooCommerce for Seamless Shop Management: from n/a through 4.2.9.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/NaInSec/CVE-LIST