2024-07-17 22:03:14 +00:00
|
|
|
{
|
|
|
|
"id": "CVE-2024-39125",
|
|
|
|
"sourceIdentifier": "cve@mitre.org",
|
|
|
|
"published": "2024-07-17T20:15:06.270",
|
2024-07-18 14:03:13 +00:00
|
|
|
"lastModified": "2024-07-18T12:28:43.707",
|
|
|
|
"vulnStatus": "Awaiting Analysis",
|
2024-07-17 22:03:14 +00:00
|
|
|
"cveTags": [],
|
|
|
|
"descriptions": [
|
|
|
|
{
|
|
|
|
"lang": "en",
|
|
|
|
"value": "Roundup before 2.4.0 allows XSS via a SCRIPT element in an HTTP Referer header."
|
2024-07-18 14:03:13 +00:00
|
|
|
},
|
|
|
|
{
|
|
|
|
"lang": "es",
|
|
|
|
"value": "Roundup anterior a 2.4.0 permite XSS a trav\u00e9s de un elemento SCRIPT en un encabezado HTTP Referer."
|
2024-07-17 22:03:14 +00:00
|
|
|
}
|
|
|
|
],
|
|
|
|
"metrics": {},
|
|
|
|
"references": [
|
|
|
|
{
|
|
|
|
"url": "https://www.roundup-tracker.org",
|
|
|
|
"source": "cve@mitre.org"
|
|
|
|
},
|
|
|
|
{
|
|
|
|
"url": "https://www.roundup-tracker.org/docs/security.html#cve-announcements",
|
|
|
|
"source": "cve@mitre.org"
|
|
|
|
}
|
|
|
|
]
|
|
|
|
}
|