cve/2024/CVE-2024-37428.md
2025-09-29 21:09:30 +02:00

791 B

CVE-2024-37428

Description

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Themesgrove WidgetKit allows Stored XSS.This issue affects WidgetKit: from n/a through 2.5.0.

POC

Reference

No PoCs from references.

Github