← Back

CVE-2024-33209

nvd nist
Published: Oct 2, 2024Modified: Jun 17, 2026

JSON object

Loading...
5.4
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.3 / Impact: 2.7
Source: NVD

Description

FlatPress v1.3 is vulnerable to Cross Site Scripting (XSS). An attacker can inject malicious JavaScript code into the "Add New Entry" section, which allows them to execute arbitrary code in the context of a victim's web browser.

Affected (1)

Products: Flatpress: Flatpress
1 product
Flatpress
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.3

References (1)

Source: cve@mitre.org
ExploitThird Party Advisory

Timeline

No history available yet.