Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HasThemes Extensions For CF7 allows Stored XSS.This issue affects Extensions For CF7: from n/a through 3.0.6.
References
Configurations
History
28 Jan 2026, 18:11
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Hasthemes extensions For Cf7
Hasthemes |
|
| References | () https://patchstack.com/database/vulnerability/extensions-for-cf7/wordpress-extensions-for-cf7-plugin-3-0-6-unauthenticated-cross-site-scripting-xss-vulnerability?_s_id=cve - Third Party Advisory | |
| CPE | cpe:2.3:a:hasthemes:extensions_for_cf7:*:*:*:*:*:wordpress:*:* |
21 Nov 2024, 09:07
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://patchstack.com/database/vulnerability/extensions-for-cf7/wordpress-extensions-for-cf7-plugin-3-0-6-unauthenticated-cross-site-scripting-xss-vulnerability?_s_id=cve - |
19 Mar 2024, 16:33
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-03-19 16:15
Updated : 2026-01-28 18:11
NVD link : CVE-2024-29102
Mitre link : CVE-2024-29102
CVE.ORG link : CVE-2024-29102
JSON object : View
Products Affected
hasthemes
- extensions_for_cf7
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
