Medium severity6.1NVD Advisory· Published Jun 1, 2021· Updated Jun 17, 2026
CVE-2021-24335
CVE-2021-24335
Description
The Car Repair Services & Auto Mechanic WordPress theme before 4.0 did not properly sanitise its serviceestimatekey search parameter before outputting it back in the page, leading to a reflected Cross-Site Scripting issue
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:smartdatasoft:car_repair_services_\&_auto_mechanic:*:*:*:*:*:wordpress:*:*Range: <4.0
- WordPress/Car Repair Services & Auto Mechanicdescription
- Range: <4.0
Patches
Vulnerability mechanics
References
3- wpscan.com/vulnerability/39258aba-2449-4214-a490-b8e46945117dnvdExploitThird Party Advisory
- themeforest.net/item/car-repair-services-auto-mechanic-wordpress-theme/19823557nvdProductThird Party Advisory
- m0ze.ru/vulnerability/%5B2021-02-12%5D-%5BWordPress%5D-%5BCWE-79%5D-Car-Repair-Services-WordPress-Theme-v3.9.txtnvd
News mentions
0No linked articles in our index yet.