Vulnerability Details CVE-2024-38782
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in MapsMarker.Com e.U. Leaflet Maps Marker allows Stored XSS.This issue affects Leaflet Maps Marker: from n/a through 3.12.9.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 20.3%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2024-38782
-
cpe:2.3:a:mapsmarker:leaflet_maps_marker:-
-
cpe:2.3:a:mapsmarker:leaflet_maps_marker:3.11
-
cpe:2.3:a:mapsmarker:leaflet_maps_marker:3.11.1
-
cpe:2.3:a:mapsmarker:leaflet_maps_marker:3.11.2
-
cpe:2.3:a:mapsmarker:leaflet_maps_marker:3.12
-
cpe:2.3:a:mapsmarker:leaflet_maps_marker:3.12.1
-
cpe:2.3:a:mapsmarker:leaflet_maps_marker:3.12.2
-
cpe:2.3:a:mapsmarker:leaflet_maps_marker:3.12.3
-
cpe:2.3:a:mapsmarker:leaflet_maps_marker:3.12.4
-
cpe:2.3:a:mapsmarker:leaflet_maps_marker:3.12.5
-
cpe:2.3:a:mapsmarker:leaflet_maps_marker:3.12.9