CVE-2024-35203
26.08.2025, 21:15
Mahara before 22.10.6, 23.04.6, and 24.04.1 allows cross-site scripting (XSS) via a file, with JavaScript code as part of its name, that is uploaded via the Mahara filebrowser system.
Vendor | Product | Version |
---|---|---|
mahara | mahara | 𝑥 < 22.10.6 |
mahara | mahara | 23.04.0 ≤ 𝑥 < 23.04.6 |
mahara | mahara | 24.04.0 ≤ 𝑥 < 24.04.1 |
𝑥
= Vulnerable software versions