Medium severity6.1NVD Advisory· Published Sep 27, 2024· Updated Jun 17, 2026
CVE-2024-46470
CVE-2024-46470
Description
Cross Site Scripting vulnerability in CodeAstro Membership Management System 1.0 allows attackers to run malicious JavaScript via the membership_type field in the edit-type.php component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:codeastro:membership_management_system:1.0:*:*:*:*:*:*:*
(expand)+ 1 more
- (no CPE)
- (no CPE)range: = 1.0
Patches
Vulnerability mechanics
References
2- github.com/JonMoriSenpai/CVE-WriteUps/blob/main/CodeAstro%20-%20MembershipM-PHP/CVE-2024-46470/writeup.mdnvdExploitMitigationThird Party Advisory
- codeastro.com/membership-management-system-in-php-with-source-code/nvdProduct
News mentions
0No linked articles in our index yet.