CVE · Medium

CVE-2024-31928 — Top Bar [top-bar] < 3.0.6

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-31928 Top Bar [top-bar] < 3.0.6 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Medium 5.9 < 3.0.6 3.0.6 2024-04-10

CVE-2024-31928

The Top Bar plugin versions prior to 3.0.6 contain a cross-site scripting vulnerability that was discovered by Joel Indra. An attacker could exploit this flaw to inject malicious scripts into affected websites, potentially executing redirects, ads, or other harmful HTML content visible to visitors. The vulnerability was resolved in version 3.0.6, and administrators should update immediately to eliminate the risk.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.