CVE-2024-45429 | WP Engine Advanced Custom Fields/Advanced Custom Fields Pro up to 6.3.5 Setting label cross site scripting

A vulnerability was found in WP Engine Advanced Custom Fields and Advanced Custom Fields Pro up to 6.3.5. It has been rated as problematic. This issue affects some unknown processing of the component Setting Handler. The manipulation of the argument label leads to cross site scripting.

The identification of this vulnerability is CVE-2024-45429. The attack may be initiated remotely. There is no exploit available.