WordPress plugins: Cross Site Scripting in WordPress plugins (CVE-2024-5020) #shorts
CVE
This CVE describes a vulnerability found in multiple WordPress plugins, specifically those using the FancyBox JavaScript library, in versions ranging from 1.3.4 to 3.5.7. This is a zero-day vulnerability involving stored cross-site scripting, which occurs due to insufficient input validation and output escaping on user-supplied attributes. Authenticated contributors—not just administrators—can exploit this weakness to inject arbitrary web scripts. These malicious scripts are executed in the victim's browser whenever they access an affected page. This poses a significant security risk as it can lead to unauthorized actions within the user's session.
Watch the full video on YouTube: CVE-2024-5020
Remediation and exploitation details
This chain involves the following actors
This following systems are involved
Attack entry point
Remediation actions
Exploitation actions
Related Content
NOTE: The following related content has not been vetted and may be unsafe.
- https://www.wordfence.com/threat-intel/vulnerabilities/id/d99d4b9a-aa09-434d-91a8-7afaa0e8b5db?source=cve
- https://plugins.trac.wordpress.org/changeset/3150376/woo-smart-quick-view
- https://plugins.trac.wordpress.org/changeset/3153081/colibri-page-builder
- https://plugins.trac.wordpress.org/changeset/3157076/nextgen-gallery
- https://plugins.trac.wordpress.org/changeset/3158415/envira-gallery-lite
- https://plugins.trac.wordpress.org/changeset/3156791/form-maker
- https://plugins.trac.wordpress.org/changeset/3160432/visual-portfolio
- https://plugins.trac.wordpress.org/changeset/3161422/fv-wordpress-flowplayer
- https://plugins.trac.wordpress.org/changeset/3160232/easy-fancybox
- https://plugins.trac.wordpress.org/changeset/3161892/wp-carousel-free
- https://plugins.trac.wordpress.org/changeset/3173097/responsive-lightbox
- https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&new=3175577%40getwid%2Ftrunk&old=3119180%40getwid%2Ftrunk&sfp_email=&sfph_mail=
- https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&new=3186301%40fancybox-for-wordpress%2Ftrunk&old=3058912%40fancybox-for-wordpress%2Ftrunk&sfp_email=&sfph_mail=
- https://plugins.trac.wordpress.org/changeset/3169926/accordion-slider