Логотип exploitDog
bind:CVE-2024-2171
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-2171

Количество 2

Количество 2

nvd логотип

CVE-2024-2171

больше 1 года назад

A stored Cross-Site Scripting (XSS) vulnerability was identified in the zenml-io/zenml repository, specifically within the 'logo_url' field. By injecting malicious payloads into this field, an attacker could send harmful messages to other users, potentially compromising their accounts. The vulnerability affects version 0.55.3 and was fixed in version 0.56.2. The impact of exploiting this vulnerability could lead to user account compromise.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-vwgf-7f9h-h499

больше 1 года назад

Cross site scripting in zenml

CVSS3: 3.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-2171

A stored Cross-Site Scripting (XSS) vulnerability was identified in the zenml-io/zenml repository, specifically within the 'logo_url' field. By injecting malicious payloads into this field, an attacker could send harmful messages to other users, potentially compromising their accounts. The vulnerability affects version 0.55.3 and was fixed in version 0.56.2. The impact of exploiting this vulnerability could lead to user account compromise.

CVSS3: 4.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-vwgf-7f9h-h499

Cross site scripting in zenml

CVSS3: 3.4
0%
Низкий
больше 1 года назад

Уязвимостей на страницу