MEDIUM 4.3 NuGet
XSS/HTML Injection Vulnerability in Umbraco Preview Badge
GHSA-69cg-w8vm-h229 · CVE-2024-10761
Published · Modified
Description
Impact
Authenticated users are able to exploit an XSS vulnerability when viewing previewed content.
Patches
Will be patched in 10.8.8, 13.5.3, 14.3.2 and 15.1.2.
Workarounds
None available.
References
- WEB https://github.com/umbraco/Umbraco-CMS/security/advisories/GHSA-69cg-w8vm-h229
- ADVISORY https://nvd.nist.gov/vuln/detail/CVE-2024-10761
- WEB https://drive.google.com/file/d/1YoZgdlS3QT7Xu005j9RO-FFUT8RbB0Da/view?usp=sharing
- PACKAGE https://github.com/umbraco/Umbraco-CMS
- WEB https://vuldb.com/?ctiid.282930
- WEB https://vuldb.com/?id.282930
- WEB https://vuldb.com/?submit.427091
Ready to move
Start Securing
Free, no credit card | First findings in minutes