๐Ÿ” CVE Alert

CVE-2024-49645

UNKNOWN 0.0

WordPress Affiliate Platform plugin <= 1.4.8 - Reflected Cross Site Scripting (XSS) vulnerability

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ilias Gomatos Affiliate Platform smdp-affiliate-platform allows Reflected XSS.This issue affects Affiliate Platform: from n/a through <= 1.4.8.

CWE CWE-79
Vendor ilias gomatos
Product affiliate platform
Published Oct 29, 2024
Last Updated Apr 1, 2026
Stay Ahead of the Next One

Get instant alerts for ilias gomatos affiliate platform

Be the first to know when new unknown vulnerabilities affecting ilias gomatos affiliate platform are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Ilias Gomatos / Affiliate Platform
0 โ‰ค 1.4.8

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
patchstack.com: https://patchstack.com/database/Wordpress/Plugin/smdp-affiliate-platform/vulnerability/wordpress-affiliate-platform-plugin-1-4-8-reflected-cross-site-scripting-xss-vulnerability?_s_id=cve

Credits

Mika | Patchstack Bug Bounty Program