Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-36110

Опубликовано: 28 мая 2024
Источник: nvd
CVSS3: 8.2
EPSS Низкий

Описание

ansibleguy-webui is an open source WebUI for using Ansible. Multiple forms in versions < 0.0.21 allowed injection of HTML elements. These are returned to the user after executing job actions and thus evaluated by the browser. These issues have been addressed in version 0.0.21 (0.0.21.post2 on pypi). Users are advised to upgrade. There are no known workarounds for these issues.

EPSS

Процентиль: 48%
0.00249
Низкий

8.2 High

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 8.2
github
больше 1 года назад

ansibleguy-webui Cross-site Scripting vulnerability

EPSS

Процентиль: 48%
0.00249
Низкий

8.2 High

CVSS3

Дефекты

CWE-79