CVE-2024-13501 | veerwest WP-FormAssembly Plugin up to 2.0.11 on WordPress Shortcode formassembly cross site scripting
A vulnerability classified as problematic has been found in veerwest WP-FormAssembly Plugin up to 2.0.11 on WordPress. Affected is the function formassembly of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2024-13501. It is possible to launch the attack remotely. There is no exploit available.