THREATOPS
THREAT OPSThreat News › [NVD] CVE-2024-5647 (MEDIUM 6.4) — Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled Magnific Popups library (version 1.1.0) in various versions due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for aut

[NVD] CVE-2024-5647 (MEDIUM 6.4) — Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled Magnific Popups library (version 1.1.0) in various versions due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for aut

lownvdPublished 2025-07-03

CVE-2024-5647 CVSS: 6.4 MEDIUM Published: 2025-07-03T10:15:34.527

Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled Magnific Popups library (version 1.1.0) in various versions due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access a

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-5647