CVE-2024-49505
13.11.2024, 15:15
A Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in openSUSE Tumbleweed MirrorCache allows the execution of arbitrary JS via reflected XSS in the REGEX and P parameters.
This issue affects MirrorCache before 1.083.| Vendor | Product | Version |
|---|---|---|
| suse | opensuse_tumbleweed | 𝑥 < 1.0.83 |
| opensuse | mirrorcache | 𝑥 < 1.083 |
𝑥
= Vulnerable software versions