CVE-2024-28128
18.03.2024, 08:15
Cross-site scripting vulnerability exists in FitNesse releases prior to 20220319, which may allow a remote unauthenticated attacker to execute an arbitrary script on the web browser of the user who is using the product and accessing a link with a specially crafted certain parameter.
Vendor | Product | Version |
---|---|---|
cleancoder | fitnesse | 𝑥 < 20220319 |
𝑥
= Vulnerable software versions
References