CVE-2024-39646: Kunalnagar Custom 404 Pro

Medium severity, CVSS 6.1. EPSS: 0.6% chance of exploitation in the next 30 days.

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Kunal Custom 404 Pro custom-404-pro.This issue affects Custom 404 Pro: from n/a through <= 3.11.1.

Affected products

  • Kunalnagar Custom 404 Pro: before 3.11.2 (fixed in 3.11.2)

Published 2024-08-01. Last modified 2026-06-17.