Количество 2
Количество 2
CVE-2026-24784
DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. Starting in version 9.0.0 and prior to versions 9.13.10 and 10.2.0, a content editor could inject scripts in module headers/footers that would run for other users. Versions 9.13.10 and 10.2.0 contain a fix for the issue.
GHSA-jjwg-4948-6wxp
DotNetNuke.Core has a potential XSS vulnerability in modules' header and footer
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-24784 DNN (formerly DotNetNuke) is an open-source web content management platform (CMS) in the Microsoft ecosystem. Starting in version 9.0.0 and prior to versions 9.13.10 and 10.2.0, a content editor could inject scripts in module headers/footers that would run for other users. Versions 9.13.10 and 10.2.0 contain a fix for the issue. | CVSS3: 6.8 | 0% Низкий | 12 дней назад | |
GHSA-jjwg-4948-6wxp DotNetNuke.Core has a potential XSS vulnerability in modules' header and footer | CVSS3: 6.9 | 0% Низкий | 11 дней назад |
Уязвимостей на страницу