CVE-2024-24871
WordPress Blocksy theme <= 2.0.19 - Cross Site Scripting (XSS) vulnerability
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in creativethemeshq Blocksy blocksy.This issue affects Blocksy: from n/a through <= 2.0.19.
| CWE | CWE-79 |
| Vendor | creativethemeshq |
| Product | blocksy |
| Published | Feb 8, 2024 |
| Last Updated | Apr 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for creativethemeshq blocksy
Be the first to know when new unknown vulnerabilities affecting creativethemeshq blocksy are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
creativethemeshq / Blocksy
0 โค 2.0.19
References
patchstack.com: https://patchstack.com/database/Wordpress/Theme/blocksy/vulnerability/wordpress-blocksy-theme-2-0-19-cross-site-scripting-xss-vulnerability?_s_id=cve patchstack.com: https://patchstack.com/database/vulnerability/blocksy/wordpress-blocksy-theme-2-0-19-cross-site-scripting-xss-vulnerability?_s_id=cve
Credits
savphill | Patchstack Bug Bounty Program