← Back

CVE-2024-52281

nvd nist
Published: Apr 16, 2025Modified: Jun 17, 2026Deferred

JSON object

Loading...
8.9
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:L
Exploitability: 2.3 / Impact: 6.0
Source: meissner@suse.de (Secondary)

Description

A: Improper Neutralization of Input During Web Page Generation vulnerability in SUSE rancher allows a malicious actor to perform a Stored XSS attack through the cluster description field. This issue affects rancher: from 2.9.0 before 2.9.4.

Timeline

No history available yet.