Vulnerability Details CVE-2024-37445
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in bPlugins Html5 Audio Player allows Stored XSS.This issue affects Html5 Audio Player: from n/a through 2.2.23.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 20.3%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2024-37445
-
cpe:2.3:a:bplugins:html5_audio_player:-
-
cpe:2.3:a:bplugins:html5_audio_player:1.0
-
cpe:2.3:a:bplugins:html5_audio_player:1.1
-
cpe:2.3:a:bplugins:html5_audio_player:1.2
-
cpe:2.3:a:bplugins:html5_audio_player:1.3
-
cpe:2.3:a:bplugins:html5_audio_player:2.1.10
-
cpe:2.3:a:bplugins:html5_audio_player:2.1.3
-
cpe:2.3:a:bplugins:html5_audio_player:2.1.5
-
cpe:2.3:a:bplugins:html5_audio_player:2.2.12
-
cpe:2.3:a:bplugins:html5_audio_player:2.2.13
-
cpe:2.3:a:bplugins:html5_audio_player:2.2.14
-
cpe:2.3:a:bplugins:html5_audio_player:2.2.16
-
cpe:2.3:a:bplugins:html5_audio_player:2.2.17
-
cpe:2.3:a:bplugins:html5_audio_player:2.2.18
-
cpe:2.3:a:bplugins:html5_audio_player:2.2.19
-
cpe:2.3:a:bplugins:html5_audio_player:2.2.22
-
cpe:2.3:a:bplugins:html5_audio_player:2.2.23