CVE-2024-51573
CVE-2024-51573: Stored Cross-Site Scripting (XSS) vulnerability in ML Responsive Audio player plugin. This flaw allows attackers to inject malicious scripts into web pages via the playlist shortcode. The vulnerability affects versions up to 0.2. While the CVSS score is 0, indicating no immediate direct impact, the SOCRadar Vulnerability Risk Score (SVRS) is 30. Although not critical (SVRS > 80), the presence of "In The Wild" tag indicates active exploitation. Successful exploitation could lead to data theft, session hijacking, or website defacement. Website administrators using the ML Responsive Audio player plugin should update to a patched version immediately or remove the plugin to mitigate this risk. This vulnerability highlights the importance of sanitizing user inputs to prevent XSS attacks.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.