cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-12749,https://securityvulnerability.io/vulnerability/CVE-2024-12749,Reflected Cross-Site Scripting Vulnerability in Competition Form Plugin for WordPress,"The Competition Form plugin for WordPress, in versions up to 2.0, suffers from a vulnerability that allows reflected cross-site scripting due to improper sanitization and escaping of user-supplied parameters. This flaw can be exploited by malicious users to inject arbitrary scripts, particularly targeting high-privilege users like administrators, potentially compromising sensitive data and site integrity.",WordPress,Competition Form,7.1,HIGH,0.0004299999854993075,false,,false,false,true,2025-01-29T06:00:07.000Z,true,false,false,,2025-01-29T06:00:07.835Z,0