ZeroHour

CVE-2024-39610

CVSS 3.1
6.1 medium
EPSS
<1%p35
Published
()
Modified
Description

Cross-site scripting vulnerability exists in FitNesse releases prior to 20241026. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is using the product.

Vendors
cleancoder
Products
fitnesse
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.