Vulnerability Details CVE-2024-56175
In Optimizely Configured Commerce before 5.2.2408, malicious payloads can be stored and subsequently executed in users' browsers under specific conditions: XSS from client-side template injection in list item names.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 24.7%
CVSS Severity
CVSS v3 Score 6.1
Products affected by CVE-2024-56175
-
cpe:2.3:a:optimizely:configured_commerce:*