Логотип exploitDog
bind:CVE-2024-11623
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-11623

Количество 2

Количество 2

nvd логотип

CVE-2024-11623

около 1 года назад

Authentik project is vulnerable to Stored XSS attacks through uploading crafted SVG files that are used as application icons.  This action could only be performed by an authenticated admin user. The issue was fixed in 2024.10.4 release.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-f8wx-qvvq-mwx4

около 1 года назад

Authentik project is vulnerable to Stored XSS attacks through uploading crafted SVG files that are used as application icons.  This action could only be performed by an authenticated admin user. The issue was fixed in 2024.10.4 release.

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-11623

Authentik project is vulnerable to Stored XSS attacks through uploading crafted SVG files that are used as application icons.  This action could only be performed by an authenticated admin user. The issue was fixed in 2024.10.4 release.

CVSS3: 4.8
0%
Низкий
около 1 года назад
github логотип
GHSA-f8wx-qvvq-mwx4

Authentik project is vulnerable to Stored XSS attacks through uploading crafted SVG files that are used as application icons.  This action could only be performed by an authenticated admin user. The issue was fixed in 2024.10.4 release.

CVSS3: 4.8
0%
Низкий
около 1 года назад

Уязвимостей на страницу