Medium severity6.5NVD Advisory· Published Apr 24, 2024· Updated Jun 17, 2026
CVE-2024-32956
CVE-2024-32956
Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Rometheme RTMKit rometheme-for-elementor.This issue affects RTMKit: from n/a through <= 1.4.1.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<=1.4.1+ 1 more
- (no CPE)range: <=1.4.1
- (no CPE)range: <=1.4.1
Patches
Vulnerability mechanics
References
2- patchstack.com/database/Wordpress/Plugin/rometheme-for-elementor/vulnerability/wordpress-romethemekit-for-elementor-plugin-1-4-1-cross-site-scripting-xss-vulnerabilitynvd
- patchstack.com/database/vulnerability/rometheme-for-elementor/wordpress-romethemekit-for-elementor-plugin-1-4-1-cross-site-scripting-xss-vulnerabilitynvd
News mentions
0No linked articles in our index yet.