← Back

CVE-2024-39610

nvd nist
Published: Nov 15, 2024Modified: Jun 17, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

Cross-site scripting vulnerability exists in FitNesse releases prior to 20241026. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is using the product.

Affected (1)

Products: Cleancoder: Fitnesse
1 product
Fitnesse
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 20241026

References (3)

Source: vultures@jpcert.or.jp
Release Notes
Source: vultures@jpcert.or.jp
Release Notes
Source: vultures@jpcert.or.jp
Third Party Advisory

Timeline

No history available yet.