CVE-2024-4456
08.05.2024, 01:15
In affected versions of Octopus Server with certain access levels it was possible to embed a Cross-Site Scripting payload on the audit page.
Vendor | Product | Version |
---|---|---|
octopus | octopus_server | 3.0.0 ≤ 𝑥 < 2023.4.8338 |
octopus | octopus_server | 2024.1.437 ≤ 𝑥 < 2024.1.11127 |
𝑥
= Vulnerable software versions