CVE-2024-32674

Heateor Social Login WordPress prior to 1.1.32 contains a cross-site scripting vulnerability. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the website using the product.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

cpe:2.3:a:heateor:social_login:*:*:*:*:*:wordpress:*:*

History

04 Jun 2025, 17:23

Type Values Removed Values Added
First Time Heateor social Login
Heateor
CPE cpe:2.3:a:heateor:social_login:*:*:*:*:*:wordpress:*:*
References () https://wordpress.org/plugins/heateor-social-login/ - () https://wordpress.org/plugins/heateor-social-login/ - Product
References () https://jvn.jp/en/jp/JVN87694318/ - () https://jvn.jp/en/jp/JVN87694318/ - Third Party Advisory

08 May 2024, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-08 04:15

Updated : 2025-06-04 17:23


NVD link : CVE-2024-32674

Mitre link : CVE-2024-32674


JSON object : View

Products Affected

heateor

  • social_login
CWE

No CWE.