CVE-2024-34749: Aidin Phormer

Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.

Phormer prior to version 3.35 contains a cross-site scripting vulnerability. If this vulnerability is exploited, a remote unauthenticated attacker may execute an arbitrary script on the web browser of the user.

Affected products

  • Aidin Phormer: before 3.35 (fixed in 3.35)

Published 2024-05-14. Last modified 2026-06-17.