Medium severity5.4NVD Advisory· Published Jan 31, 2025· Updated Jun 17, 2026
CVE-2024-12772
CVE-2024-12772
Description
The Ninja Tables WordPress plugin before 5.0.17 does not sanitize and escape a parameter before outputting it back in the page when importing a CSV, leading to a Cross Site Scripting vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- cpe:2.3:a:wpmanageninja:ninja_tables:*:*:*:*:*:wordpress:*:*Range: <5.0.17
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/7b6d0f95-6632-4079-8c1b-517a8d02c330/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.