CVE-2024-44676: Eladmin
Medium severity, CVSS 4.8. EPSS: 0.5% chance of exploitation in the next 30 days.
eladmin v2.7 and before is vulnerable to Cross Site Scripting (XSS) which allows an attacker to execute arbitrary code via LocalStoreController. java.
Affected products
- Eladmin Eladmin: up to and including 2.7
Published 2024-09-10. Last modified 2026-06-17.