Launch Week Day 1: Announcing Security Design Review
MEDIUM 4.3 NuGet

XSS/HTML Injection Vulnerability in Umbraco Preview Badge

GHSA-69cg-w8vm-h229 · CVE-2024-10761

Published · Modified

Description

Impact

Authenticated users are able to exploit an XSS vulnerability when viewing previewed content.

Patches

Will be patched in 10.8.8, 13.5.3, 14.3.2 and 15.1.2.

Workarounds

None available.

Ready to move

Start Securing

Free, no credit card | First findings in minutes