Description
Os Commerce is currently susceptible to a Cross-Site Scripting (XSS) vulnerability. This vulnerability allows attackers to inject JS through the "specials_type_name[1]" parameter, potentially leading to unauthorized execution of scripts within a user's web browser.
Remediation
References
Related Vulnerabilities
WordPress Plugin Grid Gallery-Photo Image Grid Gallery Cross-Site Scripting (1.2.4)
MySQL CVE-2024-21247 Vulnerability (CVE-2024-21247)
WordPress Plugin Smash Balloon Social Post Feed Cross-Site Scripting (2.19.1)
WordPress Plugin Advanced Custom Fields (ACF) Cross-Site Scripting (5.8.11)
Joomla Improper Access Control Vulnerability (CVE-2016-9838)