CVE-2025-24012
21.01.2025, 16:15
Umbraco is a free and open source .NET content management system. Starting in version 14.0.0 and prior to versions 14.3.2 and 15.1.2, authenticated users are able to exploit a cross-site scripting vulnerability when viewing certain localized backoffice components. Versions 14.3.2 and 15.1.2 contain a patch.
Vendor | Product | Version |
---|---|---|
umbraco | umbraco_cms | 14.0.0 ≤ 𝑥 < 14.3.2 |
umbraco | umbraco_cms | 15.0.0 ≤ 𝑥 < 15.1.2 |
𝑥
= Vulnerable software versions