cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-13325,https://securityvulnerability.io/vulnerability/CVE-2024-13325,Reflected Cross-Site Scripting in Glossy WordPress Plugin,"The Glossy WordPress plugin, versions up to 2.3.5, is susceptible to a reflected cross-site scripting (XSS) vulnerability due to improper sanitization and escaping of a user-controlled parameter in the output. This flaw could potentially allow attackers to inject malicious scripts into web pages, impacting users with elevated privileges, such as administrators, and leading to unauthorized actions or data exposure.",WordPress,Glossy,6.1,MEDIUM,0.01,false,,false,false,true,2025-02-04T06:00:03.000Z,true,false,false,,2025-02-04T06:00:03.948Z,0