CVE-2024-28710
EUVD-2024-295807.10.2024, 16:15
Cross Site Scripting vulnerability in LimeSurvey before 6.5.0+240319 allows a remote attacker to execute arbitrary code via a lack of input validation and output encoding in the Alert Widget's message component.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| limesurvey | limesurvey | 𝑥 < 6.5.0\+240319 |
𝑥
= Vulnerable software versions