Medium severity5.4NVD Advisory· Published Dec 11, 2025· Updated Jun 17, 2026
CVE-2024-58297
CVE-2024-58297
Description
PyroCMS v3.0.1 contains a stored cross-site scripting vulnerability in the admin redirects configuration that allows attackers to inject malicious scripts. Attackers can insert a payload in the 'Redirect From' field to execute arbitrary JavaScript when administrators view the redirects page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
4- www.exploit-db.com/exploits/52016nvdExploitVDB Entry
- www.vulncheck.com/advisories/pyrocms-v-stored-cross-site-scripting-via-admin-redirectsnvdThird Party Advisory
- pyrocms.comnvdProduct
- www.softaculous.com/apps/cms/PyroCMS/nvdProduct
News mentions
0No linked articles in our index yet.