cve/2024/CVE-2024-22854.md
2024-06-18 02:51:15 +02:00

775 B

CVE-2024-22854

Description

DOM-based HTML injection vulnerability in the main page of Darktrace Threat Visualizer version 6.1.27 (bundle version 61050) and before has been identified. A URL, crafted by a remote attacker and visited by an authenticated user, allows open redirect and potential credential stealing using an injected HTML form.

POC

Reference

Github

No PoCs found on GitHub currently.