CVE-2024-57277

Medium severity, CVSS 5.7. EPSS: 0.5% chance of exploitation in the next 30 days.

InnoShop V.0.3.8 and below is vulnerable to Cross Site Scripting (XSS) via SVG file upload.

Published 2025-01-24. Last modified 2026-06-17.