CVE-2024-55224
09.01.2025, 21:15
An HTML injection vulnerability in Vaultwarden prior to v1.32.5 allows attackers to execute arbitrary code via injecting a crafted payload into the username field of an e-mail message.
Vendor | Product | Version |
---|---|---|
dani-garcia | vaultwarden | 𝑥 < 1.32.5 |
𝑥
= Vulnerable software versions