THREAT OPS › Threat News › [NVD] CVE-2024-5647 (MEDIUM 6.4) — Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled Magnific Popups library (version 1.1.0) in various versions due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for aut
[NVD] CVE-2024-5647 (MEDIUM 6.4) — Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled Magnific Popups library (version 1.1.0) in various versions due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for aut
CVE-2024-5647 CVSS: 6.4 MEDIUM Published: 2025-07-03T10:15:34.527
Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled Magnific Popups library (version 1.1.0) in various versions due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access a
Indicators of compromise
- CVE-2024-5647cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-5647