cve/2024/CVE-2024-55074.md
2025-09-29 16:08:36 +00:00

742 B

CVE-2024-55074

Description

The edit profile function of Grocy through 4.3.0 allows stored XSS and resultant privilege escalation by uploading a crafted HTML or SVG file, a different issue than CVE-2024-8370.

POC

Reference

Github

No PoCs found on GitHub currently.