CVE-2024-37536
21.07.2024, 07:15
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Web357 Easy Custom Code (LESS/CSS/JS) Live editing allows Stored XSS.This issue affects Easy Custom Code (LESS/CSS/JS) Live editing: from n/a through 1.0.8.
Vendor | Product | Version |
---|---|---|
web357 | easy_custom_code | 𝑥 < 1.0.9 |
𝑥
= Vulnerable software versions
References