CVE-2024-29921

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Supsystic Photo Gallery by Supsystic allows Stored XSS.This issue affects Photo Gallery by Supsystic: from n/a through 1.15.16.
Configurations

Configuration 1 (hide)

cpe:2.3:a:supsystic:photo_gallery:*:*:*:*:*:wordpress:*:*

History

10 Mar 2025, 15:50

Type Values Removed Values Added
First Time Supsystic
Supsystic photo Gallery
CPE cpe:2.3:a:supsystic:photo_gallery:*:*:*:*:*:wordpress:*:*
References () https://patchstack.com/database/vulnerability/gallery-by-supsystic/wordpress-photo-gallery-by-supsystic-plugin-1-15-16-cross-site-scripting-xss-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/gallery-by-supsystic/wordpress-photo-gallery-by-supsystic-plugin-1-15-16-cross-site-scripting-xss-vulnerability?_s_id=cve - Third Party Advisory

Information

Published : 2024-03-27 08:15

Updated : 2025-03-10 15:50


NVD link : CVE-2024-29921

Mitre link : CVE-2024-29921

CVE.ORG link : CVE-2024-29921


JSON object : View

Products Affected

supsystic

  • photo_gallery
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')