CVE Published: 14/05/2024 |
CVE Updated: 01/08/2024 |
CVE Year: 2024 Source: CERT-PL |
Vendor: Puneeth Reddy |
Product: Online Shopping System Advanced Status : PUBLISHED
CVE-2024-3579 Description
Open-source project Online Shopping System Advanced is vulnerable to Reflected Cross-Site Scripting (XSS). An attacker might trick somebody into using a crafted URL, which will cause a script to be run in user\'s browser.