CVE-2024-57329 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

HortusFox v3.9 contains a stored XSS vulnerability in the "Add Plant" function. The name input field does not sanitize or escape user inputs, allowing attackers…
Medium CVSS: 5.4

CVE-2024-57329

HortusFox v3.9 contains a stored XSS vulnerability in the "Add Plant" function. The name input field does not sanitize or escape user inputs, allowing attackers to inject and execute arbitrary JavaScript payloads.
Vendor
Hortusfox
Product
Hortusfox
CWE
CWE-79
Yayın Tarihi
2025-01-23 22:15:15
Güncelleme
2025-08-14 20:59:28
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar