Vulnerabilities > Brainstormforce > Astra Widgets > 1.2.12

DATE CVE VULNERABILITY TITLE RISK
2025-01-07 CVE-2024-56274 Cross-site Scripting vulnerability in Brainstormforce Astra Widgets
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brainstorm Force Astra Widgets allows Stored XSS.This issue affects Astra Widgets: from n/a through 1.2.15.
network
low complexity
brainstormforce CWE-79
5.4