CVE-2024-42697
EUVD-2024-3974720.09.2024, 18:15
Cross Site Scripting vulnerability in Leotheme Leo Product Search Module v.2.1.6 and earlier allows a remote attacker to execute arbitrary code via the q parameter of the product search function.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| leotheme | leo_product_search_module | 𝑥 ≤ 2.1.6 | ADP |