Medium severity6.1NVD Advisory· Published Apr 15, 2024· Updated Jun 17, 2026
CVE-2024-31651
CVE-2024-31651
Description
A cross-site scripting (XSS) in Cosmetics and Beauty Product Online Store v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the First Name parameter.
Affected products
2- Cosmetics and Beauty Product Online Store/Cosmetics and Beauty Product Online Storedescription
- Range: <=1.0
Patches
Vulnerability mechanics
References
1- github.com/Mohitkumar0786/CVE/blob/main/CVE-2024-31651.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.