CVE-2024-6019: Scriptonite Music Request Manager

Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.

The Music Request Manager WordPress plugin through 1.3 does not sanitise and escape incoming music requests, which could allow unauthenticated users to perform Cross-Site Scripting attacks against administrators

Affected products

  • Scriptonite Music Request Manager: up to and including 1.3

Published 2024-09-12. Last modified 2026-06-17.