CVE-2024-35731

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Moose Kenta Gutenberg Blocks Responsive Blocks and block templates library for Gutenberg Editor allows Stored XSS.This issue affects Kenta Gutenberg Blocks Responsive Blocks and block templates library for Gutenberg Editor: from n/a through 1.3.9.
Configurations

Configuration 1 (hide)

cpe:2.3:a:wpmoose:kenta_blocks:*:*:*:*:*:*:*:*

History

21 Nov 2024, 09:20

Type Values Removed Values Added
References () https://patchstack.com/database/vulnerability/kenta-blocks/wordpress-kenta-gutenberg-blocks-plugin-1-3-9-cross-site-scripting-xss-vulnerability?_s_id=cve - Third Party Advisory () https://patchstack.com/database/vulnerability/kenta-blocks/wordpress-kenta-gutenberg-blocks-plugin-1-3-9-cross-site-scripting-xss-vulnerability?_s_id=cve - Third Party Advisory
CVSS v2 : unknown
v3 : 5.4
v2 : unknown
v3 : 6.5

18 Jul 2024, 19:17

Type Values Removed Values Added
CPE cpe:2.3:a:wpmoose:kenta_blocks:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : 6.5
v2 : unknown
v3 : 5.4
Summary
  • (es) Vulnerabilidad de neutralización inadecuada de la entrada durante la generación de páginas web (XSS o 'Cross-site Scripting') en WP Moose Kenta Gutenberg Blocks Responsive Blocks and block templates library for Gutenberg Editor permite XSS Almacenado. Este problema afecta a los bloques responsivos de Kenta Gutenberg y la librería de plantillas de bloques para Gutenberg Editor: desde n/a hasta 1.3.9.
References () https://patchstack.com/database/vulnerability/kenta-blocks/wordpress-kenta-gutenberg-blocks-plugin-1-3-9-cross-site-scripting-xss-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/kenta-blocks/wordpress-kenta-gutenberg-blocks-plugin-1-3-9-cross-site-scripting-xss-vulnerability?_s_id=cve - Third Party Advisory
First Time Wpmoose kenta Blocks
Wpmoose

08 Jun 2024, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-08 13:15

Updated : 2024-11-21 09:20


NVD link : CVE-2024-35731

Mitre link : CVE-2024-35731

CVE.ORG link : CVE-2024-35731


JSON object : View

Products Affected

wpmoose

  • kenta_blocks
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')